Medium severity6.5NVD Advisory· Published Mar 30, 2018· Updated Jun 17, 2026
CVE-2018-9133
CVE-2018-9133
Description
ImageMagick 7.0.7-26 Q16 has excessive iteration in the DecodeLabImage and EncodeLabImage functions (coders/tiff.c), which results in a hang (tens of minutes) with a tiny PoC file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tiff file.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- Range: =7.0.7-26
- osv-coords5 versionspkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3
< 6.8.8.1-71.65.1+ 4 more
- (no CPE)range: < 6.8.8.1-71.65.1
- (no CPE)range: < 6.8.8.1-71.65.1
- (no CPE)range: < 6.8.8.1-71.65.1
- (no CPE)range: < 6.8.8.1-71.65.1
- (no CPE)range: < 6.8.8.1-71.65.1
Patches
Vulnerability mechanics
References
3- github.com/ImageMagick/ImageMagick/issues/1072nvdExploitIssue TrackingThird Party Advisory
- usn.ubuntu.com/3681-1/nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2020/08/msg00030.htmlnvd
News mentions
0No linked articles in our index yet.