OpenBSD VuXML: Documenting security issues in the OpenBSD Ports & Packages Collection

ImageMagick -- ReadPNMImage() heap overflow vulnerability

Affected packages
ImageMagick < 6.2.2-0

Details

VuXML ID 9bf5aad8-ba14-11d9-9e14-00065bd5b0b6
Discovery 2005-04-25
Entry 2005-05-01

Damian Put reports about ImageMagick:

Remote exploitation of a heap overflow vulnerability could allow execution of arbitrary code or course denial of service.

A heap overflow exists in ReadPNMImage() function, that is used to decode a PNM image files.

References

Bugtraq ID 13351
URL http://marc.theaimsgroup.com/?l=bugtraq&m=111445767107869