GraphicsMagick and ImageMagick popen() Command Execution (CVE-2016-5118)

A remote code execution vulnerability exists in ImageMagick and GraphicsMagick. The vulnerability is due to an error in the way the programs handle specially crafted files. A remote attacker can exploit this issue by enticing a user to open a specially crafted file that could run arbitrary code in the context of the current user.

Leave a Reply