DescriptionThe ReadGROUP4Image function in coders/tiff.c in ImageMagick does not check the return value of the fwrite function, which allows remote attackers to cause a denial of service (application crash) via a crafted file.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDLA-868-1, DSA-3799-1
Debian Bugs849439

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
imagemagick (PTS)buster8:
buster (security)8:
bullseye (security), bullseye8:
sid, trixie, bookworm8:

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs

CVE is for the fwrite issue in ReadGROUP4Image. This was
specifically noted at the beginning of issues/196, but not fixed in
either of these commits 933e96f01a8c889c7bf5ffd30020e86a02a046e7 nor
4e914bbe371433f0590cefdf3bd5f3a5710069f9 upstream. It is not the same
as the fputc issue in ReadGROUP4Image.

Search for package or bug name: Reporting problems