Lucene search

K
f5F5F5:K17959662
HistoryNov 21, 2016 - 12:00 a.m.

K17959662 : ImageMagick vulnerabilities CVE-2015-8897 and CVE-2016-5239

2016-11-2100:00:00
my.f5.com
17

7.5 High

AI Score

Confidence

High

0.016 Low

EPSS

Percentile

87.6%

Security Advisory Description

The SpliceImage function in MagickCore/transform.c in ImageMagick before 6.9.2-4 allows remote attackers to cause a denial of service (application crash) via a crafted png file.

The gnuplot delegate functionality in ImageMagick before 6.9.4-0 and GraphicsMagick allows remote attackers to execute arbitrary commands via unspecified vectors.
Impact
There is no impact; F5 products are not affected by this vulnerability.