VYPR
Medium severity6.5NVD Advisory· Published Sep 17, 2017· Updated Jun 17, 2026

CVE-2017-14505

CVE-2017-14505

Description

DrawGetStrokeDashArray in wand/drawing-wand.c in ImageMagick 7.0.7-1 mishandles certain NULL arrays, which allows attackers to perform Denial of Service (NULL pointer dereference and application crash in AcquireQuantumMemory within MagickCore/memory.c) by providing a crafted Image File as input.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

18

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.