CVE-2019-16708 describes a memory leak vulnerability in ImageMagick version 7.0.8-35, specifically within the magick/xwindow.c component related to XCreateImage. This issue affects various distributions including Canonical, Debian, and openSUSE. Rated as Medium severity (CVSS 6.5), it requires user interaction and network access for exploitation, potentially leading to high availability impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
7.0.8-35CPE matchmatch criteria | cpe:2.3:a:imagemagick:imagemagick:7.0.8-35:*:*:*:*:*:*:* | ||
16.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:* | ||
18.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:* | ||
19.04CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:* | ||
19.10CPE matchmatch criteria | cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.