Red Hat Bugzilla – Bug 1471835
CVE-2017-11352 ImageMagick: Improper EOF handling in coders/rle.c can trigger crash (Incomplete fix for CVE-2017-9144)
Last modified: 2018-06-29 18:24:09 EDT
In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. This is caused by an incomplete fix of CVE-2017-9144. Upstream bug: https://github.com/ImageMagick/ImageMagick/issues/502 Upstream patch (ImageMagick-7): https://github.com/ImageMagick/ImageMagick/commit/86cb33143c5b21912187403860a7c26761a3cd23 Upstream patch (ImageMagick-6): https://github.com/ImageMagick/ImageMagick/commit/7f1f01b695e869c410ee10e2176f8fd764f09373 References: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=868469 https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-9144
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1471837]