coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by converting an image to rgf format.
References
Link | Resource |
---|---|
https://github.com/ImageMagick/ImageMagick/pull/223 | Issue Tracking Patch Vendor Advisory |
https://github.com/ImageMagick/ImageMagick/commit/a0108a892f9ea3c2bb1e7a49b7d71376c2ecbff7 | Patch |
https://bugzilla.redhat.com/show_bug.cgi?id=1378777 | Issue Tracking Patch Third Party Advisory |
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1594060 | Issue Tracking Third Party Advisory |
http://www.securityfocus.com/bid/93228 | Third Party Advisory VDB Entry |
http://www.openwall.com/lists/oss-security/2016/09/22/2 | Mailing List Patch Third Party Advisory |
Configurations
Information
Published : 2017-04-20 11:59
Updated : 2017-05-08 12:34
NVD link : CVE-2016-7540
Mitre link : CVE-2016-7540
JSON object : View
CWE
CWE-19
Data Processing Errors
Products Affected
imagemagick
- imagemagick