CVE-2007-4988

7.8HIGH

Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers

Published: 9/24/2007Updated: 4/9/2025

Description

Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers an integer overflow and a heap-based buffer overflow.

AI AnalysisPowered by AI

Affected Products

imagemagickimagemagick
canonicalubuntu_linux
6.06
canonicalubuntu_linux
6.10
canonicalubuntu_linux
7.04

References