Sploitus

CVE-2017-13139

No indexed exploits for CVE-2017-13139 yet

In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, the ReadOneMNGImage function in coders/png.c has an out-of-bounds read with the MNG CLIP chunk.

Affected products
Alt Linux, Imagemagick, Suse, Ubuntu
Imagemagick
≤ 6.9.9-0, 7.0.0-0, 7.0.1-0, 7.0.1-1, 7.0.1-2, 7.0.1-3, 7.0.1-4, 7.0.1-5, 7.0.1-6, 7.0.1-7, 7.0.1-8, 7.0.1-9, 7.0.1-10, 7.0.2-0, 7.0.2-1, 7.0.2-2, 7.0.2-3, 7.0.2-4, 7.0.2-5, 7.0.2-6, 7.0.2-7, 7.0.2-8, 7.0.2-9, 7.0.2-10, 7.0.3-0, 7.0.3-1, 7.0.3-2, 7.0.3-3, 7.0.3-4, 7.0.3-5, 7.0.3-6, 7.0.3-7, 7.0.3-8, 7.0.3-9, 7.0.3-10, 7.0.4-0, 7.0.4-1, 7.0.4-2, 7.0.4-3, 7.0.4-4
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
3.8% (89th percentile)
Weakness
CWE-125
NVD status
Modified
Published
2017-08-23
CVE-2017-13139 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2017-13139 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2017-13139 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.