In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted SUN image file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-05-18T19:00:00

Updated: 2024-08-05T08:01:52.915Z

Reserved: 2018-05-18T00:00:00

Link: CVE-2018-11251

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-05-18T19:29:00.460

Modified: 2019-10-03T00:03:26.223

Link: CVE-2018-11251

cve-icon Redhat

Severity : Low

Publid Date: 2018-01-23T00:00:00Z

Links: CVE-2018-11251 - Bugzilla