The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large row value in an sgi file.
[
{
"signature_type": "Function",
"source": "https://github.com/imagemagick/imagemagick/commit/7afcf9f71043df15508e46f079387bd4689a738d",
"target": {
"file": "coders/sgi.c",
"function": "ReadSGIImage"
},
"id": "CVE-2016-7101-43ae43cc",
"signature_version": "v1",
"digest": {
"function_hash": "38992979835926582678353836717524664850",
"length": 11108.0
},
"deprecated": false
},
{
"signature_type": "Line",
"source": "https://github.com/imagemagick/imagemagick/commit/7afcf9f71043df15508e46f079387bd4689a738d",
"target": {
"file": "coders/sgi.c"
},
"id": "CVE-2016-7101-4db2fb23",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"175738667582951687709934378911256453683",
"173870332777356733597540604599799727409",
"109051879306058611738241749710437944719",
"24499431317792828616637206672947119917",
"119235688060635533120094398494704443561",
"94076028067114905915555189509555766357",
"318604369223038471143800125259557374019",
"267892749823546944089710570774029745235",
"234059992580300943213135794320117750814",
"30947904900441035358072037530787739733"
]
},
"deprecated": false
},
{
"signature_type": "Function",
"source": "https://github.com/imagemagick/imagemagick/commit/104b6c96a4d7cd159f234a8f8fa1b4649b1d7286",
"target": {
"file": "coders/psd.c",
"function": "WritePSDImage"
},
"id": "CVE-2016-7101-6e2077b7",
"signature_version": "v1",
"digest": {
"function_hash": "233824663533578799883944741873460280200",
"length": 9732.0
},
"deprecated": false
},
{
"signature_type": "Function",
"source": "https://github.com/imagemagick/imagemagick/commit/104b6c96a4d7cd159f234a8f8fa1b4649b1d7286",
"target": {
"file": "coders/psd.c",
"function": "FilterAdditionalLayerInformation"
},
"id": "CVE-2016-7101-a11d4e55",
"signature_version": "v1",
"digest": {
"function_hash": "129518849084965542227393714367609967839",
"length": 1810.0
},
"deprecated": false
},
{
"signature_type": "Line",
"source": "https://github.com/imagemagick/imagemagick/commit/104b6c96a4d7cd159f234a8f8fa1b4649b1d7286",
"target": {
"file": "coders/psd.c"
},
"id": "CVE-2016-7101-c8cfb57f",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"108740126882545814851533735595465736822",
"48477567520902389236647671138370929630",
"87977518246777124720835573222756406809",
"326475873969871574180186612361008149091",
"103316115861786808335111923209966370780",
"328181468267352931963705897837823121811",
"156806815285268351483048121514396599840",
"282853779392576571124339293828972945725",
"312083330872765293319986429520062410420",
"192103501246992342805196797283805010345",
"108950214869754331967832519788943577408",
"35292478060111696458058930589778156425",
"185792689403760769672262205046227631005",
"59097276997680189510529763139163968628",
"237934478085821480177959881169460742626",
"196352857121978090287577182543906081952",
"49653345742379819664969521811633097205",
"31491154282409138535382876070113104871",
"218661088709509303266055304047316721918",
"20253547151499278016004694190735579378"
]
},
"deprecated": false
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-7101.json"
[
{
"signature_type": "Line",
"source": "https://github.com/imagemagick/imagemagick6/commit/a1f20bada73d7bc3caeb0848cbfb8f2e47cdeb82",
"target": {
"file": "coders/psd.c"
},
"id": "CVE-2016-7101-730d81f7",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"108740126882545814851533735595465736822",
"48477567520902389236647671138370929630",
"87977518246777124720835573222756406809",
"84753881553476775258891330976462556223",
"155609111829766798641137799421712012612",
"255341032439269261320635827463233094372",
"184847602632045208793430889847669681440",
"312083330872765293319986429520062410420",
"192103501246992342805196797283805010345",
"108950214869754331967832519788943577408",
"35292478060111696458058930589778156425",
"185792689403760769672262205046227631005",
"59097276997680189510529763139163968628",
"237934478085821480177959881169460742626",
"196352857121978090287577182543906081952",
"271655001391509804335411098799191708068",
"68914122621374857408525954426970417130",
"313902962427810150903660941337562869610",
"275254203105307134258303080212656236648",
"24574565019827027245956094580362128240",
"245147871992941663000817129628397723463",
"74485250202162378269615953882358810863",
"90830639591579514837463664665496985063"
]
},
"deprecated": false
},
{
"signature_type": "Function",
"source": "https://github.com/imagemagick/imagemagick6/commit/a1f20bada73d7bc3caeb0848cbfb8f2e47cdeb82",
"target": {
"file": "coders/psd.c",
"function": "FilterAdditionalLayerInformation"
},
"id": "CVE-2016-7101-7e3a5c8a",
"signature_version": "v1",
"digest": {
"function_hash": "149391582554956405594455371198657664568",
"length": 1786.0
},
"deprecated": false
},
{
"signature_type": "Function",
"source": "https://github.com/imagemagick/imagemagick6/commit/a1f20bada73d7bc3caeb0848cbfb8f2e47cdeb82",
"target": {
"file": "coders/psd.c",
"function": "WritePSDImage"
},
"id": "CVE-2016-7101-a4c6878c",
"signature_version": "v1",
"digest": {
"function_hash": "43342500214236906679621929440654510826",
"length": 9477.0
},
"deprecated": false
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-7101.json"