Red Hat Bugzilla – Bug 1637189
CVE-2018-18024 ImageMagick: infinite loop in the ReadBMPImage function of the coders/bmp.c
Last modified: 2018-10-08 17:10:06 EDT
A flaw was found in ImageMagick 7.0.8-13 Q16, there is an infinite loop in the ReadBMPImage function of the coders/bmp.c file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file. References: https://github.com/ImageMagick/ImageMagick/issues/1337 Upstream Patches: https://github.com/ImageMagick/ImageMagick/commit/948f1c86d649a29df08a38d2ff8b91cdf3e92b82 https://github.com/ImageMagick/ImageMagick6/commit/b268ce7a59440972f4476b9fd98104b6a836d971
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1637190]