CVE-2018-12599: High severity IBM Data Risk Manager vulnerability
A flaw was found in ImageMagick 7.0.8-3 Q16, ReadBMPImage and WriteBMPImage in coders/bmp.c allow attackers to cause an out of bounds write via a crafted file.
References: https://github.com/ImageMagick/ImageMagick/issues/1177
Patch: https://github.com/ImageMagick/ImageMagick6/commit/081f518eb9cb38e683b8b9ccb9e4ab5c52f82c2f https://github.com/ImageMagick/ImageMagick/commit/ae04fa4be910255e5d363edebd77adeee99a525d
Other sources
ImageMagick is vulnerable to an out-of-bounds write, caused by improper bounds checking by the ReadBMPImage and WriteBMPImage in coders/bmp.c. By persuading a victim to open a specially-crafted file, a remote attacker could overflow a buffer and execute arbitrary code on the system.
— IBM
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-12599?
CVE-2018-12599 has been rated as a medium severity vulnerability due to the potential for out-of-bounds write attacks.
How do I fix CVE-2018-12599?
To address CVE-2018-12599, update ImageMagick to version 7.0.8-4 or later where the vulnerability is patched.
What software is affected by CVE-2018-12599?
CVE-2018-12599 affects ImageMagick versions up to and including 7.0.8-3, specifically impacting BMP file handling.
Can CVE-2018-12599 be exploited remotely?
Yes, CVE-2018-12599 can be exploited remotely through crafted BMP files uploaded to a vulnerable server.
Is my system vulnerable to CVE-2018-12599?
If your system is using ImageMagick version 7.0.8-3 or earlier, it is vulnerable to CVE-2018-12599 and should be updated immediately.