The ReadPESImage function in coders\pes.c in ImageMagick 7.0.6-1 has an infinite loop vulnerability that can cause CPU exhaustion via a crafted PES file.
The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/99964 | vdb entry |
https://github.com/ImageMagick/ImageMagick/issues/537 | issue tracking third party advisory patch |
https://www.debian.org/security/2017/dsa-4019 | vendor advisory |
https://lists.debian.org/debian-lts-announce/2019/05/msg00015.html | mailing list |