Security Advisory

CVE-2018-9133

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-03-30 08:00:00
Last updated 2024-08-05 07:17:51
Assigner mitre
State PUBLISHED

Description

ImageMagick 7.0.7-26 Q16 has excessive iteration in the DecodeLabImage and EncodeLabImage functions (coders/tiff.c), which results in a hang (tens of minutes) with a tiny PoC file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tiff file.