coders/tiff.c in ImageMagick before 6.9.5-3 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF file.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://git.imagemagick.org/repos/ImageMagick/commit/c20de102cc57f3739a8870f79e728e3b0bea18c0 | patch |
https://security.gentoo.org/glsa/201611-21 | vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1354500 | issue tracking patch |