Use-after-free vulnerability in the DestroyImage function in image.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of service via a crafted file.
{ "vanir_signatures": [ { "id": "CVE-2017-12877-0cff27ff", "digest": { "length": 12287.0, "function_hash": "280782259968601561913488682222620419606" }, "source": "https://github.com/imagemagick/imagemagick/commit/04178de2247e353fc095846784b9a10fefdbf890", "target": { "function": "ReadMATImage", "file": "coders/mat.c" }, "signature_version": "v1", "deprecated": false, "signature_type": "Function" }, { "id": "CVE-2017-12877-f478c626", "digest": { "line_hashes": [ "339606728789946910659352856338057264551", "273304794439978174715465613304177582362", "72962003250021266676898593159676050463", "30132988823738337284505988246580684023", "196731535820372898895977446257794220716", "221908301901639910692701097302891436841", "295105071710474347348074133194051704949", "283856250064145763007163792714004106741", "310018973946647348847449199040682465347" ], "threshold": 0.9 }, "source": "https://github.com/imagemagick/imagemagick/commit/04178de2247e353fc095846784b9a10fefdbf890", "target": { "file": "coders/mat.c" }, "signature_version": "v1", "deprecated": false, "signature_type": "Line" } ] }