In ImageMagick 7.0.7-20 Q16 x86_64, a memory leak vulnerability was found in the function ReadDCMImage in coders/dcm.c, which allows attackers to cause a denial of service via a crafted DCM image file.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
https://github.com/ImageMagick/ImageMagick/issues/931 | issue tracking exploit third party advisory |
https://usn.ubuntu.com/3681-1/ | third party advisory vendor advisory |