Medium severity6.5NVD Advisory· Published Dec 14, 2017· Updated May 13, 2026
CVE-2017-17682
CVE-2017-17682
Description
In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function ExtractPostscript in coders/wpg.c, which allows attackers to cause a denial of service (CPU exhaustion) via a crafted wpg image file that triggers a ReadWPGImage call.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- github.com/ImageMagick/ImageMagick/issues/870nvdExploitThird Party Advisory
- www.securityfocus.com/bid/102202nvdThird Party AdvisoryVDB Entry
- lists.debian.org/debian-lts-announce/2018/01/msg00000.htmlnvdMailing ListThird Party Advisory
- usn.ubuntu.com/3681-1/nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2019/05/msg00015.htmlnvd
- lists.debian.org/debian-lts-announce/2020/09/msg00007.htmlnvd
News mentions
0No linked articles in our index yet.