The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8862.
| Software | From | Fixed in |
|---|---|---|
| imagemagick / imagemagick | - | 6.9.6-6 |
| imagemagick / imagemagick | 7.0.0-0 | 7.0.3-7.x |
| opensuse / leap | 42.2 | 42.2.x |
| opensuse / leap | 42.1 | 42.1.x |
| opensuse / opensuse | 13.2 | 13.2.x |