CVE-2019-13134: Medium severity ibm data risk manager vulnerability
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c.
Other sources
ImageMagick is vulnerable to a denial of service, caused by a memory leak in the function ReadVIFFImage in coders/viff.c. By persuading a victim to open a specially crafted file, a remote attacker could exploit this vulnerability to cause a denial of service condition.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-13134?
CVE-2019-13134 has a severity level associated with denial of service due to a memory leak in the ImageMagick library.
How do I fix CVE-2019-13134?
To fix CVE-2019-13134, update ImageMagick to version 7.0.8-50 or later.
Which software is affected by CVE-2019-13134?
CVE-2019-13134 affects versions of ImageMagick prior to 7.0.8-50.
Can CVE-2019-13134 be exploited remotely?
Yes, CVE-2019-13134 can be exploited remotely by persuading a victim to open a specially crafted file.
What kind of attacks can occur due to CVE-2019-13134?
CVE-2019-13134 can lead to a denial of service condition for applications utilizing the affected ImageMagick library.