Use-after-free in ImageMagick - CVE-2022-1114
Published: May 9, 2022
ImageMagick
ImageMagick.org
Description
The vulnerability allows a remote attacker can gain access to sensitive information or perform a denial of service attack.
The vulnerability exists due to a use-after-free error in RelinquishDCMInfo() function of dcm.c file. A remote attacker can pass a specially crafted DICOM image file to the application and gain access to sensitive information or perform a denial of service attack.