CVE-2017-14739: ImageMagick
High severity, CVSS 7.5. EPSS: 3% chance of exploitation in the next 30 days.
The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows remote attackers to cause a denial of service (NULL Pointer Dereference in DistortImage in MagickCore/distort.c, and application crash) via unspecified vectors.
Affected products
- ImageMagick ImageMagick: version 7.0.7-4 only
Published 2017-09-26. Last modified 2026-06-17.