Heap-based buffer overflow in the ReadRLEImage function in coders/rle.c in ImageMagick 6.9.4-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted RLE file.
[
{
"signature_type": "Function",
"target": {
"function": "ReadRLEImage",
"file": "coders/rle.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/139d4323c40d7363bfdd2382c3821a6f76d69430",
"digest": {
"length": 10838.0,
"function_hash": "77626898924781479573835170477845610344"
},
"id": "CVE-2016-10050-5f01c242",
"signature_version": "v1",
"deprecated": false
},
{
"signature_type": "Line",
"target": {
"file": "coders/rle.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/73fb0aac5b958521e1511e179ecc0ad49f70ebaf",
"digest": {
"line_hashes": [
"267126696522631243637154053117559899847",
"194685861941463828697209183016499384540",
"324653638925418779892666715507618860882",
"124485125922039252038167889184296040858",
"85106562968262129759488476083529397733",
"157662687178047085674125175844961650042",
"142050422640354494791364593205432372508",
"54384164121269514477325327768581846008",
"245726469203549136635487596723735688689",
"466965525889268471860395757970274732",
"293936090464199042141228148819271545063",
"185171254139728529170985282759243646696",
"119369566322523715329684826529429485502",
"204846801654535442630177278878898656111",
"160821126149538071051277242024380796076",
"293936090464199042141228148819271545063",
"44609005223077563065981326035523619544",
"80764522418760111161312775892560066612",
"312133404824105457475069843275559323779",
"96960317885383337514161779214108713734",
"164537079167020457061907602852828314021",
"169598984756786969344223388527239717849"
],
"threshold": 0.9
},
"id": "CVE-2016-10050-c7798fe4",
"signature_version": "v1",
"deprecated": false
},
{
"signature_type": "Line",
"target": {
"file": "coders/rle.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/139d4323c40d7363bfdd2382c3821a6f76d69430",
"digest": {
"line_hashes": [
"267126696522631243637154053117559899847",
"194685861941463828697209183016499384540",
"324653638925418779892666715507618860882",
"124485125922039252038167889184296040858",
"85106562968262129759488476083529397733",
"157662687178047085674125175844961650042",
"142050422640354494791364593205432372508",
"54384164121269514477325327768581846008",
"245726469203549136635487596723735688689",
"466965525889268471860395757970274732",
"293936090464199042141228148819271545063",
"54384164121269514477325327768581846008",
"245726469203549136635487596723735688689",
"466965525889268471860395757970274732",
"293936090464199042141228148819271545063"
],
"threshold": 0.9
},
"id": "CVE-2016-10050-f3b45641",
"signature_version": "v1",
"deprecated": false
},
{
"signature_type": "Function",
"target": {
"function": "ReadRLEImage",
"file": "coders/rle.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/73fb0aac5b958521e1511e179ecc0ad49f70ebaf",
"digest": {
"length": 10700.0,
"function_hash": "330416355882722401432506661432146686421"
},
"id": "CVE-2016-10050-ff22ffb3",
"signature_version": "v1",
"deprecated": false
}
]