CVE-2015-8897: ImageMagick

Medium severity, CVSS 5.5. EPSS: 2.1% chance of exploitation in the next 30 days.

The SpliceImage function in MagickCore/transform.c in ImageMagick before 6.9.2-4 allows remote attackers to cause a denial of service (application crash) via a crafted png file.

Affected products

Published 2017-03-15. Last modified 2026-06-17.