ImageMagick before 7.0.8-50 has an integer overflow vulnerability in the function TIFFSeekCustomStream in coders/tiff.c.
[
{
"signature_version": "v1",
"id": "CVE-2019-13136-b5e62ccd",
"deprecated": false,
"signature_type": "Line",
"target": {
"file": "coders/tiff.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/fe5f4b85e6b1b54d3b4588a77133c06ade46d891",
"digest": {
"threshold": 0.9,
"line_hashes": [
"47726187039743115344880282796039141830",
"93650880770652387038144336207196880644",
"293143761486711174663571093745444564466",
"249833036865519401372698631124875448489"
]
}
},
{
"signature_version": "v1",
"id": "CVE-2019-13136-f52491bb",
"deprecated": false,
"signature_type": "Function",
"target": {
"function": "TIFFSeekCustomStream",
"file": "coders/tiff.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/fe5f4b85e6b1b54d3b4588a77133c06ade46d891",
"digest": {
"function_hash": "309119417389493968406435003960152444885",
"length": 501.0
}
}
]