ImageMagick 7.0.8-5 has a memory leak vulnerability in the function ReadOneJNGImage in coders/png.c.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
https://github.com/ImageMagick/ImageMagick/issues/1201 | third party advisory |
https://github.com/ImageMagick/ImageMagick/commit/76efa969342568841ecf320b5a041685a6d24e0b | third party advisory patch |
https://usn.ubuntu.com/3785-1/ | third party advisory vendor advisory |