CVE-2007-4987
EPSS 3.8%Published: 9/24/2007Modified: 4/28/2026
Description
Off-by-one error in the ReadBlobString function in blob.c in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted image file, which triggers the writing of a '\0' character to an out-of-bounds address.
Affected packages (1)
- Debian/imagemagickfrom 0, < 7:6.2.4.5.dfsg1-2