In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a...
Moderate severity
Unreviewed
Published
May 14, 2022
to the GitHub Advisory Database
•
Updated Feb 2, 2023
Description
Published by the National Vulnerability Database
May 18, 2018
Published to the GitHub Advisory Database
May 14, 2022
Last updated
Feb 2, 2023
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.
References