Red Hat Bugzilla – Bug 1473801
CVE-2017-11448 ImageMagick: Info leak from from uninitialized memory in ReadJPEGImage function
Last modified: 2018-06-29 18:24:46 EDT
The ReadJPEGImage function in coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted file. Upstream patch: https://github.com/ImageMagick/ImageMagick/commit/1737ac82b335e53376382c07b9a500d73dd2aa11 References: https://github.com/ImageMagick/ImageMagick/issues/556
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1473802]