The ReadOneLayer function in coders/xcf.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (memory consumption) via a crafted file. Upstream bug: https://github.com/ImageMagick/ImageMagick/issues/656 Upstream patch: https://github.com/ImageMagick/ImageMagick/commit/68bbe7b8b226ed79e339296793f68f1b2bebc519 References: https://bugs.gentoo.org/show_bug.cgi?id=629576
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1488451]