CVE-2020-10251

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
10/03/2020
Last modified:
10/03/2020

Description

In ImageMagick 7.0.9, an out-of-bounds read vulnerability exists within the ReadHEICImageByID function in coders\heic.c. It can be triggered via an image with a width or height value that exceeds the actual size of the image.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:imagemagick:imagemagick:7.0.9:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools