A flaw was found in ImageMagick 7.0.8-4. A memory leak in ReadMIFFImage in coders/miff.c. References: https://github.com/ImageMagick/ImageMagick/issues/1191 Upstream Patch: https://github.com/ImageMagick/ImageMagick6/commit/ae3eecad2f59e27123c1a6c891be75d06fc03656 https://github.com/ImageMagick/ImageMagick/commit/4b352c0be410ad900469a079e389178f878aded8
Created ImageMagick tracking bugs for this issue: Affects: fedora-all [bug 1609940]
Memory allocated in WriteMIFFImage and referenced by colormap is not released in case image depth is not an accepted value.
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2018-14436