First published: Mon Feb 23 2015(Updated: )
A denial of service flaw (infinite loop) was found in the way ImageMagick processed certain HDR files: <a href="http://seclists.org/oss-sec/2015/q1/608">http://seclists.org/oss-sec/2015/q1/608</a> Upstream issue, including a reproducer: <a href="http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26929">http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26929</a> Upstream patches: <a href="http://trac.imagemagick.org/changeset/17845">http://trac.imagemagick.org/changeset/17845</a> <a href="http://trac.imagemagick.org/changeset/17846">http://trac.imagemagick.org/changeset/17846</a>
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick ImageMagick | >=6.0<=6.9.3-10 | |
ImageMagick ImageMagick | >=7.0.1-0<=7.0.5-0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.