ImageMagick 7.0.8-50 Q16 has a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage because a width of zero is mishandled.
[
{
"id": "CVE-2019-13295-0937fc32",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "MagickCore/threshold.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/a7759f410b773a1dd57b0e1fb28112e1cd8b97bc",
"signature_type": "Line",
"digest": {
"line_hashes": [
"101480389661755136823777002680857014520",
"164723819306503848081405681649544469626",
"110121456871116652908697791062221537715",
"267870570324628738260703116481618029291"
],
"threshold": 0.9
}
},
{
"id": "CVE-2019-13295-77e37fcc",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "MagickCore/threshold.c",
"function": "AdaptiveThresholdImage"
},
"source": "https://github.com/imagemagick/imagemagick/commit/a7759f410b773a1dd57b0e1fb28112e1cd8b97bc",
"signature_type": "Function",
"digest": {
"length": 3849.0,
"function_hash": "114229958223688000930643104355317239950"
}
}
]
[
{
"id": "CVE-2019-13295-3fd23eae",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "magick/threshold.c"
},
"source": "https://github.com/imagemagick/imagemagick6/commit/55e6dc49f1a381d9d511ee2f888fdc3e3c3e3953",
"signature_type": "Line",
"digest": {
"line_hashes": [
"101480389661755136823777002680857014520",
"110194585388222159459105892933235142379",
"104839688629436770912608900524686506476",
"241308737095992024270415431420095523128"
],
"threshold": 0.9
}
},
{
"id": "CVE-2019-13295-db791b39",
"deprecated": false,
"signature_version": "v1",
"target": {
"file": "magick/threshold.c",
"function": "AdaptiveThresholdImage"
},
"source": "https://github.com/imagemagick/imagemagick6/commit/55e6dc49f1a381d9d511ee2f888fdc3e3c3e3953",
"signature_type": "Function",
"digest": {
"length": 4682.0,
"function_hash": "49268417501802662437984964696517387061"
}
}
]