ImageMagick 7.0.6-6 has a memory leak vulnerability in ReadXCFImage in coders/xcf.c via a crafted xcf image file.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
https://usn.ubuntu.com/3681-1/ | third party advisory vendor advisory |
https://github.com/ImageMagick/ImageMagick/issues/649 | exploit third party advisory patch |