Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers to cause a denial of service (out-of-bounds read, memory leak, and crash) via a crafted image.
{ "vanir_signatures": [ { "signature_type": "Line", "target": { "file": "MagickCore/property.c" }, "id": "CVE-2016-6491-c0e0875a", "digest": { "threshold": 0.9, "line_hashes": [ "241217519160942786707834831173525707874", "59056741932824958857864971591163893937", "122973178970279523316782367189729149634", "177295067256838802184830878822483116736" ] }, "source": "https://github.com/imagemagick/imagemagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Function", "target": { "file": "MagickCore/property.c", "function": "Get8BIMProperty" }, "id": "CVE-2016-6491-d7d6582e", "digest": { "length": 3131.0, "function_hash": "49450834786374495517076233315258723851" }, "source": "https://github.com/imagemagick/imagemagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b", "deprecated": false, "signature_version": "v1" } ] }