CVE Vulnerabilities

CVE-2016-3715

Published: May 05, 2016 | Modified: Jul 24, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V3
Ubuntu
MEDIUM

The EPHEMERAL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to delete arbitrary files via a crafted image.

Affected Software

Name Vendor Start Version End Version
Enterprise_linux_desktop Redhat 6.0 (including) 6.0 (including)
Enterprise_linux_desktop Redhat 7.0 (including) 7.0 (including)
Enterprise_linux_eus Redhat 6.7 (including) 6.7 (including)
Enterprise_linux_eus Redhat 7.2 (including) 7.2 (including)
Enterprise_linux_eus Redhat 7.3 (including) 7.3 (including)
Enterprise_linux_eus Redhat 7.4 (including) 7.4 (including)
Enterprise_linux_eus Redhat 7.5 (including) 7.5 (including)
Enterprise_linux_eus Redhat 7.6 (including) 7.6 (including)
Enterprise_linux_eus Redhat 7.7 (including) 7.7 (including)
Enterprise_linux_for_ibm_z_systems Redhat 6.0_s390x (including) 6.0_s390x (including)
Enterprise_linux_for_ibm_z_systems Redhat 7.0_s390x (including) 7.0_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 6.7_s390x (including) 6.7_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.2_s390x (including) 7.2_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.3_s390x (including) 7.3_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.4_s390x (including) 7.4_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.5_s390x (including) 7.5_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.6_s390x (including) 7.6_s390x (including)
Enterprise_linux_for_ibm_z_systems_eus Redhat 7.7_s390x (including) 7.7_s390x (including)
Enterprise_linux_for_power_big_endian Redhat 6.0_ppc64 (including) 6.0_ppc64 (including)
Enterprise_linux_for_power_big_endian Redhat 7.0_ppc64 (including) 7.0_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 6.7_ppc64 (including) 6.7_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.2_ppc64 (including) 7.2_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.3_ppc64 (including) 7.3_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.4_ppc64 (including) 7.4_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.5_ppc64 (including) 7.5_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.6_ppc64 (including) 7.6_ppc64 (including)
Enterprise_linux_for_power_big_endian_eus Redhat 7.7_ppc64 (including) 7.7_ppc64 (including)
Enterprise_linux_for_power_little_endian Redhat 7.0_ppc64le (including) 7.0_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.2_ppc64le (including) 7.2_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.3_ppc64le (including) 7.3_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.4_ppc64le (including) 7.4_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.5_ppc64le (including) 7.5_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.6_ppc64le (including) 7.6_ppc64le (including)
Enterprise_linux_for_power_little_endian_eus Redhat 7.7_ppc64le (including) 7.7_ppc64le (including)
Enterprise_linux_hpc_node Redhat 6.0 (including) 6.0 (including)
Enterprise_linux_hpc_node Redhat 7.0 (including) 7.0 (including)
Enterprise_linux_hpc_node_eus Redhat 7.2 (including) 7.2 (including)
Enterprise_linux_server Redhat 6.0 (including) 6.0 (including)
Enterprise_linux_server Redhat 7.0 (including) 7.0 (including)
Enterprise_linux_server_aus Redhat 7.2 (including) 7.2 (including)
Enterprise_linux_server_aus Redhat 7.3 (including) 7.3 (including)
Enterprise_linux_server_aus Redhat 7.4 (including) 7.4 (including)
Enterprise_linux_server_aus Redhat 7.6 (including) 7.6 (including)
Enterprise_linux_server_aus Redhat 7.7 (including) 7.7 (including)
Enterprise_linux_server_from_rhui Redhat 6.0 (including) 6.0 (including)
Enterprise_linux_server_from_rhui Redhat 7.0 (including) 7.0 (including)
Enterprise_linux_server_supplementary_eus Redhat 6.7z (including) 6.7z (including)
Enterprise_linux_server_tus Redhat 7.2 (including) 7.2 (including)
Enterprise_linux_server_tus Redhat 7.3 (including) 7.3 (including)
Enterprise_linux_server_tus Redhat 7.6 (including) 7.6 (including)
Enterprise_linux_server_tus Redhat 7.7 (including) 7.7 (including)
Enterprise_linux_workstation Redhat 6.0 (including) 6.0 (including)
Enterprise_linux_workstation Redhat 7.0 (including) 7.0 (including)
Red Hat Enterprise Linux 6 RedHat ImageMagick-0:6.7.2.7-4.el6_7 *
Red Hat Enterprise Linux 7 RedHat ImageMagick-0:6.7.8.9-13.el7_2 *
Graphicsmagick Ubuntu artful *
Graphicsmagick Ubuntu precise *
Graphicsmagick Ubuntu trusty *
Graphicsmagick Ubuntu wily *
Graphicsmagick Ubuntu xenial *
Graphicsmagick Ubuntu yakkety *
Graphicsmagick Ubuntu zesty *
Imagemagick Ubuntu artful *
Imagemagick Ubuntu bionic *
Imagemagick Ubuntu cosmic *
Imagemagick Ubuntu devel *
Imagemagick Ubuntu precise *
Imagemagick Ubuntu trusty *
Imagemagick Ubuntu wily *
Imagemagick Ubuntu xenial *
Imagemagick Ubuntu yakkety *
Imagemagick Ubuntu zesty *

References