CVE-2016-3717
The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.
- Canonical Ubuntu Linux
- = 12.04, 14.04, 15.10, 16.04
- Fix
- Available
- CVSS 2.0
- 7.1 HIGH
- CVSS 3.1
- 5.5 MEDIUM
- EPSS
- 20.4% (97th percentile)
- Weakness
- CWE-200
- NVD status
- Modified
- Published
- 2016-05-05
CVE-2016-3717 at NVD
4 known exploits for CVE-2016-3717
Proof-of-concept code and exploit modules indexed by Sploitus