ImageMagick 7.0.8-35 has a memory leak in coders/dot.c, as demonstrated by AcquireMagickMemory in MagickCore/memory.c.
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
Link | Tags |
---|---|
https://github.com/ImageMagick/ImageMagick/issues/1528 | exploit third party advisory patch |
https://usn.ubuntu.com/4192-1/ | third party advisory vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00040.html | mailing list third party advisory vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00042.html | mailing list third party advisory vendor advisory |
https://www.debian.org/security/2020/dsa-4712 | third party advisory vendor advisory |