A denial of service flaw (infinite loop) was found in the way ImageMagick processed certain HDR files: http://seclists.org/oss-sec/2015/q1/608 Upstream issue, including a reproducer: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26929 Upstream patches: http://trac.imagemagick.org/changeset/17845 http://trac.imagemagick.org/changeset/17846
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1195263]
ImageMagick-6.8.8.10-9.fc22 has been pushed to the Fedora 22 stable repository. If problems still persist, please make note of it in this bug report.
CVE assignment: http://seclists.org/oss-sec/2016/q2/481 Upstream fix: https://github.com/ImageMagick/ImageMagick/commit/97aa7d7cfd2027f6ba7ce42caf8b798541b9cdc6