ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors.
[
{
"digest": {
"length": 21296.0,
"function_hash": "62266670660684400905173600749239523842"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2019-13306-5229bcfb",
"target": {
"function": "WritePNMImage",
"file": "coders/pnm.c"
},
"source": "https://github.com/imagemagick/imagemagick6/commit/cb5ec7d98195aa74d5ed299b38eff2a68122f3fa"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106194549059593632269021515242205683326",
"73206001765135714412094639179018116291",
"160821921610913074378187192959977773534",
"54722723182597058330938219509802193063",
"106194549059593632269021515242205683326",
"73206001765135714412094639179018116291",
"160821921610913074378187192959977773534",
"54722723182597058330938219509802193063"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2019-13306-a897742d",
"target": {
"file": "coders/pnm.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/e92040ea6ee2a844ebfd2344174076795a4787bd"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106194549059593632269021515242205683326",
"73206001765135714412094639179018116291",
"160821921610913074378187192959977773534",
"54722723182597058330938219509802193063",
"106194549059593632269021515242205683326",
"73206001765135714412094639179018116291",
"160821921610913074378187192959977773534",
"54722723182597058330938219509802193063"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2019-13306-d4666a0a",
"target": {
"file": "coders/pnm.c"
},
"source": "https://github.com/imagemagick/imagemagick6/commit/cb5ec7d98195aa74d5ed299b38eff2a68122f3fa"
},
{
"digest": {
"length": 21985.0,
"function_hash": "129115947922196402685183886624375644393"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2019-13306-e8d33e0c",
"target": {
"function": "WritePNMImage",
"file": "coders/pnm.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/e92040ea6ee2a844ebfd2344174076795a4787bd"
}
]
[
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "7.0.8-50-q16"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "8.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "9.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "16.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "18.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "19.04"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "19.10"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.0"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "15.1"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-13306.json"