CVE-2019-13133: Medium severity ibm data risk manager vulnerability
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c.
Other sources
ImageMagick is vulnerable to a denial of service, caused by a memory leak in the function ReadBMPImage in coders/bmp.c. By persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to cause a denial of service condition.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-13133?
CVE-2019-13133 is classified as a denial of service vulnerability due to a memory leak in ImageMagick.
How do I fix CVE-2019-13133?
To fix CVE-2019-13133, upgrade ImageMagick to version 7.0.8-50 or later.
Are there any affected versions for CVE-2019-13133?
CVE-2019-13133 affects ImageMagick versions prior to 7.0.8-50 and certain earlier 6.x versions.
Can CVE-2019-13133 be exploited remotely?
Yes, CVE-2019-13133 can be exploited remotely by persuading a victim to open a specially crafted BMP file.
What type of attack is CVE-2019-13133 associated with?
CVE-2019-13133 is associated with a denial of service attack, causing the application to crash or become unresponsive.