CVE-2017-18251: Medium severity ibm data risk manager vulnerability
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function ReadPCDImage in coders/pcd.c, which allow remote attackers to cause a denial of service via a crafted file.
Other sources
ImageMagick is vulnerable to a denial of service, caused by a memory leak in the ReadPCDImage function in coders/pcd.c. By persuading a victim to open a specially-crafted file, a remote attacker could exploit this vulnerability to cause a denial of service condition.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-18251?
CVE-2017-18251 is a vulnerability found in ImageMagick that allows a remote attacker to cause a denial of service.
How does CVE-2017-18251 affect ImageMagick?
CVE-2017-18251 affects ImageMagick by causing a memory leak in the ReadPCDImage function in coders/pcd.c.
What is the severity of CVE-2017-18251?
CVE-2017-18251 has a severity rating of 6.5 (medium).
How can I fix CVE-2017-18251 on IBM Data Risk Manager 2.0.6?
To fix CVE-2017-18251 on IBM Data Risk Manager 2.0.6, apply the provided patch from IBM.
How can I fix CVE-2017-18251 on Ubuntu with ImageMagick 6.9.9.34+dfsg-3?
To fix CVE-2017-18251 on Ubuntu with ImageMagick 6.9.9.34+dfsg-3, update to the latest version of ImageMagick.