#VU21061 Out-of-bounds read in ImageMagick - CVE-2019-15139
Published: September 12, 2019 / Updated: September 12, 2019
ImageMagick
ImageMagick.org
Description
The vulnerability allows a remote attacker to cause a denial of service (DoS) condition on the target system.
The vulnerability exists in "ReadXWDImage" in the "coders/xwd.c" file due to a boundary condition when reading on XWD files. A remote attacker can create a specially crafted XWD image file, trick the victim into opening it, trigger out-of-bounds read error and crash the application.