Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers to cause a denial of service (out-of-bounds read, memory leak, and crash) via a crafted image.
{ "vanir_signatures": [ { "id": "CVE-2016-6491-c0e0875a", "digest": { "line_hashes": [ "241217519160942786707834831173525707874", "59056741932824958857864971591163893937", "122973178970279523316782367189729149634", "177295067256838802184830878822483116736" ], "threshold": 0.9 }, "source": "https://github.com/imagemagick/imagemagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b", "target": { "file": "MagickCore/property.c" }, "signature_version": "v1", "deprecated": false, "signature_type": "Line" }, { "id": "CVE-2016-6491-d7d6582e", "digest": { "length": 3131.0, "function_hash": "49450834786374495517076233315258723851" }, "source": "https://github.com/imagemagick/imagemagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b", "target": { "function": "Get8BIMProperty", "file": "MagickCore/property.c" }, "signature_version": "v1", "deprecated": false, "signature_type": "Function" } ] }