5.5
CVSSv3

CVE-2023-34474

Published: 16/06/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A heap-based buffer overflow issue exists in ImageMagick's ReadTIM2ImageData() function in coders/tim2.c. A local attacker could trick the user in opening specially crafted file, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.

Vulnerable Product Search on Vulmon Subscribe to Product

imagemagick imagemagick

fedoraproject extra packages for enterprise linux 8.0

fedoraproject fedora 37

fedoraproject fedora 38

Vendor Advisories

Description<!----> This CVE is under investigation by Red Hat Product Security ...