CVE-2016-7514

The ReadPSDChannelPixels function in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
References
Link Resource
http://www.openwall.com/lists/oss-security/2016/09/22/2 Mailing List Patch Third Party Advisory
http://www.securityfocus.com/bid/93122 Third Party Advisory VDB Entry
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533442 Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=1378739 Issue Tracking Patch
https://github.com/ImageMagick/ImageMagick/commit/198fffab4daf8aea88badd9c629350e5b26ec32f Patch
https://github.com/ImageMagick/ImageMagick/commit/280215b9936d145dd5ee91403738ccce1333cab1 Patch
https://github.com/ImageMagick/ImageMagick/commit/6f1879d498bcc5cce12fe0c5decb8dbc0f608e5d Patch
https://github.com/ImageMagick/ImageMagick/commit/e14fd0a2801f73bdc123baf4fbab97dec55919eb Patch
https://github.com/ImageMagick/ImageMagick/issues/83 Issue Tracking Patch
http://www.openwall.com/lists/oss-security/2016/09/22/2 Mailing List Patch Third Party Advisory
http://www.securityfocus.com/bid/93122 Third Party Advisory VDB Entry
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533442 Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=1378739 Issue Tracking Patch
https://github.com/ImageMagick/ImageMagick/commit/198fffab4daf8aea88badd9c629350e5b26ec32f Patch
https://github.com/ImageMagick/ImageMagick/commit/280215b9936d145dd5ee91403738ccce1333cab1 Patch
https://github.com/ImageMagick/ImageMagick/commit/6f1879d498bcc5cce12fe0c5decb8dbc0f608e5d Patch
https://github.com/ImageMagick/ImageMagick/commit/e14fd0a2801f73bdc123baf4fbab97dec55919eb Patch
https://github.com/ImageMagick/ImageMagick/issues/83 Issue Tracking Patch
Configurations

Configuration 1 (hide)

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-04-20 18:59

Updated : 2025-04-20 01:37


NVD link : CVE-2016-7514

Mitre link : CVE-2016-7514

CVE.ORG link : CVE-2016-7514


JSON object : View

Products Affected

imagemagick

  • imagemagick
CWE
CWE-125

Out-of-bounds Read