9.8
CVSSv3

CVE-2018-14551

Published: 23/07/2018 Updated: 24/08/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The ReadMATImageV4 function in coders/mat.c in ImageMagick 7.0.8-7 uses an uninitialized variable, leading to memory corruption.

Vulnerable Product Search on Vulmon Subscribe to Product

imagemagick imagemagick 7.0.8-7

canonical ubuntu linux 18.04

Vendor Advisories

Debian Bug report logs - #904713 imagemagick: CVE-2018-14551: use of uninitialized variable Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 27 Jul 2018 04:18:01 UTC Se ...
Several security issues were fixed in ImageMagick ...
The ReadMATImageV4 function in coders/matc in ImageMagick 708-7 uses an uninitialized variable, leading to memory corruption ...