#VU18573 Off-by-one in ImageMagick - CVE-2019-10131
Published: May 22, 2019
ImageMagick
ImageMagick.org
Description
The vulnerability allows a remote attacker to perform denial of service attack.
The vulnerability exists due to an off-by-one read error in the formatIPTCfromBuffer function in coders/meta.c. A remote attacker can pass specially crafted image file the to affected application, trigger an off-by-one read error and perform denial of service attack.