Oval Definition:oval:com.ubuntu.bionic:def:2017182720000000
Revision Date:2018-05-18Version:1
Title:CVE-2017-18272 on Ubuntu 18.04 LTS (bionic) - low.
Description:In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-18272
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND Package Information
  • NOT imagemagick package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT imagemagick-6-common package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT imagemagick-6.q16 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT imagemagick-6.q16hdri package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT imagemagick-common package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libimage-magick-perl package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libimage-magick-q16-perl package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libimage-magick-q16hdri-perl package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagick++-6-headers package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagick++-6.q16-7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagick++-6.q16hdri-7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6-arch-config package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6-headers package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6.q16-3 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6.q16-3-extra package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6.q16hdri-3 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickcore-6.q16hdri-3-extra package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickwand-6-headers package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickwand-6.q16-3 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libmagickwand-6.q16hdri-3 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT perlmagick package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • BACK