coders/tiff.c in ImageMagick before 7.0.3.7 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted image.
[
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"247620946759921492575415513024756065586",
"50896312699930081523715180500174713658",
"231675231729570776562861727271780450971",
"302508324520594238331560815933357393478",
"127730668698825017458676311314560016045",
"97815763581308662179864833917513178886",
"101704038714750715037304716633387422442",
"237200058576730443833658257311677148",
"66069152130651500713445049202011531078",
"224382232327538823267953935123762517567",
"311955416404207522535453206769655348412",
"234096865022074686617427397958828719602",
"34260403361851322777521590931950490851",
"84168868596172379291070427929838359663",
"57265808006176154017317333561821343311",
"156396075282919597542308920900869153460",
"37781103217054938395958593400881753220",
"29590685362806620622809252715763392835",
"5550686539325689365267663532700228979",
"41570376546407067890847820040333538154",
"41775974757875003178724063495049933297",
"255646948429972090781418647332415311344",
"131032242464321879487466585445603120402",
"198805636086456377489024030702423605144",
"21632530785129503333439798840644064544",
"164997101734233518792323227237663020643",
"330823173793009481722315417236776919866",
"315564389671359885447263189803977814160",
"98532665609233617690851882723598288010",
"29953327407288736472656075950633058497",
"301241043238082000093661540231610200630",
"41775974757875003178724063495049933297",
"70137809450356881700587759175012735055",
"246001648241838160963675588830362693304",
"90103592733087634808397398872441145520",
"79502739646394183082630155997433956575",
"141680563008528189092843397326394367381",
"324139037418362785316039369219427805715",
"77464462150485185663494167592210132377",
"174918393398141899834537246700441307313",
"30007470081048926056494009160295772830",
"21753185505305111302036413873827047879"
],
"threshold": 0.9
},
"target": {
"file": "coders/tiff.c"
},
"id": "CVE-2016-9559-007487ed",
"source": "https://github.com/imagemagick/imagemagick/commit/b61d35eaccc0a7ddeff8a1c3abfcd0a43ccf210b",
"signature_type": "Line"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"function_hash": "165666785978298775256710634152582434665",
"length": 2643.0
},
"target": {
"function": "TIFFGetProperties",
"file": "coders/tiff.c"
},
"id": "CVE-2016-9559-33428e16",
"source": "https://github.com/imagemagick/imagemagick/commit/b61d35eaccc0a7ddeff8a1c3abfcd0a43ccf210b",
"signature_type": "Function"
},
{
"signature_version": "v1",
"deprecated": false,
"digest": {
"line_hashes": [
"285621429718230674628564823598541881932",
"254779900445661904490999447098259742997",
"307426811821909476145418816135776972906",
"49293532521742093251835604718820255959",
"59425608455010345035018655503636645758"
],
"threshold": 0.9
},
"target": {
"file": "coders/txt.c"
},
"id": "CVE-2016-9559-811f728d",
"source": "https://github.com/imagemagick/imagemagick/commit/b61d35eaccc0a7ddeff8a1c3abfcd0a43ccf210b",
"signature_type": "Line"
}
]