Related Vulnerabilities: CVE-2021-3610  

A heap-based buffer overflow vulnerability was found in ImageMagick in ReadTIFFImage() in coders/tiff.c because of an incorrect setting of the pixel array size which can lead to crash and segmentation fault. This flaw affects ImageMagick versions prior to 7.1.0-0 and 7.0.11-14.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

A heap-based buffer overflow vulnerability was found in ImageMagick in ReadTIFFImage() in coders/tiff.c because of an incorrect setting of the pixel array size which can lead to crash and segmentation fault. This flaw affects ImageMagick versions prior to 7.1.0-0 and 7.0.11-14.

AVG-2085 imagemagick 7.0.11.13-3 7.0.11.14-1 Medium Fixed

https://bugzilla.redhat.com/show_bug.cgi?id=1973689
https://github.com/ImageMagick/ImageMagick/commit/930ff0d1a9bc42925a7856e9ea53f5fc9f318bf3