ImageMagick 7.0.6-6 has a large loop vulnerability in ReadWPGImage in coders/wpg.c, causing CPU exhaustion via a crafted wpg image file.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://github.com/ImageMagick/ImageMagick/issues/654 | third party advisory exploit |
https://usn.ubuntu.com/3681-1/ | third party advisory vendor advisory |
https://lists.debian.org/debian-lts-announce/2019/05/msg00015.html | third party advisory mailing list |
https://lists.debian.org/debian-lts-announce/2020/09/msg00007.html | third party advisory mailing list |
https://github.com/ImageMagick/ImageMagick/commit/7d63315a64267c565d1f34b9cb523a14616fed24 | patch vendor advisory |