Medium severity6.5NVD Advisory· Published Apr 9, 2017· Updated May 13, 2026
CVE-2017-7606
CVE-2017-7606
Description
coders/rle.c in ImageMagick 7.0.5-4 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.
Affected products
1- cpe:2.3:a:imagemagick:imagemagick:7.0.5-4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- blogs.gentoo.org/ago/2017/04/02/imagemagick-undefined-behavior-in-codersrle-c/nvdExploitPatchThird Party Advisory
- www.debian.org/security/2017/dsa-3863nvd
- www.securityfocus.com/bid/98685nvd
News mentions
0No linked articles in our index yet.