CVE-2017-17880: ImageMagick
High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based buffer over-read in WriteWEBPImage in coders/webp.c, related to a WEBP_DECODER_ABI_VERSION check.
Affected products
- ImageMagick ImageMagick: version 7.0.7-16 only
Published 2017-12-27. Last modified 2026-06-17.