In ImageMagick 7.0.7-29 and earlier, a missing NULL check in ReadOneJNGImage in coders/png.c allows an attacker to cause a denial of service (WriteBlob assertion failure and application exit) via a crafted file.
[
    {
        "source": "https://github.com/imagemagick/imagemagick6/commit/1007b98f8795ad4bea6bc5f68a32d83e982fdae4",
        "id": "CVE-2018-16749-c74ff6cf",
        "signature_type": "Line",
        "signature_version": "v1",
        "deprecated": false,
        "target": {
            "file": "coders/png.c"
        },
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "298871696389629155284717183490975032472",
                "28410204597529120706238128142211346520",
                "266622275964940873483939931408488320853",
                "242540208099304219285832213890642484568"
            ]
        }
    },
    {
        "source": "https://github.com/imagemagick/imagemagick6/commit/1007b98f8795ad4bea6bc5f68a32d83e982fdae4",
        "id": "CVE-2018-16749-fc5a5880",
        "signature_type": "Function",
        "signature_version": "v1",
        "deprecated": false,
        "target": {
            "function": "ReadOneJNGImage",
            "file": "coders/png.c"
        },
        "digest": {
            "function_hash": "4859487235691391041003765874819701615",
            "length": 14962.0
        }
    }
]