Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR file.
[
{
"id": "CVE-2016-7520-9fc7a166",
"deprecated": false,
"source": "https://github.com/imagemagick/imagemagick/commit/14e606db148d6ebcaae20f1e1d6d71903ca4a556",
"target": {
"file": "coders/hdr.c"
},
"digest": {
"line_hashes": [
"261613896413040236202728902801090629737",
"910447047944893757553674354114831407",
"209129301325924218894889965815119603213",
"175077565918725114436041454196775222743",
"176637435052841913276605164796219644003",
"208025609213307800022292998157650736121",
"274277301695813900790937200843926142684",
"321071345149128667616407158871456610962",
"311274049531778033145933701126830577393",
"70253998843513032037944280532823061077",
"163980523602352263592525460105768086099"
],
"threshold": 0.9
},
"signature_version": "v1",
"signature_type": "Line"
},
{
"id": "CVE-2016-7520-fdec17b1",
"deprecated": false,
"source": "https://github.com/imagemagick/imagemagick/commit/14e606db148d6ebcaae20f1e1d6d71903ca4a556",
"target": {
"function": "WriteHDRImage",
"file": "coders/hdr.c"
},
"digest": {
"length": 5072.0,
"function_hash": "294111022627234427408949519455393145826"
},
"signature_version": "v1",
"signature_type": "Function"
}
]