So, when do we know if IM 7.0.3.2 is safe or not? Are we stuck until the CVE is public?
-
-
-
It's not safe, the issues and testcases are all here http://www.openwall.com/lists/oss-security/2016/10/05/7 …. Disable PDF/PS/EPS/XPS coders in policy.xml
- 1 more reply
New conversation -
-
-
imagetragick originally had no logo/site/branding but NO ONE cared.
@ryanhuber has the numbers. It sucks -
IMO next time there is a branded ImageMagick vulnerability, the logo itself should contain the exploit
- 2 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.