CVE-2016-8866 in ImageMagick and OpenSuse Products
Published on February 15, 2017
The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8862.
Products Associated with CVE-2016-8866
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2016-8866 are published in these products:
Exploit Probability
EPSS
0.48%
Percentile
64.57%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.