CVE-2017-18211
In ImageMagick 7.0.7, a NULL pointer dereference vulnerability was found in the function saveBinaryCLProgram in magick/opencl.c because a program-lookup result is not checked, related to CacheOpenCLKernel.
- Affected products
- Imagemagick, Suse, Ubuntu
- Imagemagick
- = 7.0.7-0, 7.0.7-1, 7.0.7-2, 7.0.7-3, 7.0.7-4, 7.0.7-5, 7.0.7-6, 7.0.7-8, 7.0.7-9, 7.0.7-10, 7.0.7-11, 7.0.7-12, 7.0.7-13, 7.0.7-14, 7.0.7-15, 7.0.7-16, 7.0.7-17, 7.0.7-18, 7.0.7-19, 7.0.7-20, 7.0.7-21, 7.0.7-22, 7.0.7-23, 7.0.7-24, 7.0.7-25, 7.0.7.7
- Fix
- Available
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 4.0% (89th percentile)
- Weakness
- CWE-476
- NVD status
- Modified
- Published
- 2018-03-01
CVE-2017-18211 at NVD
No indexed exploits for CVE-2017-18211 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2017-18211 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.