In ImageMagick 7.0.6-6 and GraphicsMagick 1.3.26, a heap-based buffer over-read was found in the function SFWScan in coders/sfw.c, which allows attackers to cause a denial of service via a crafted file.
| Software | From | Fixed in |
|---|---|---|
| imagemagick / imagemagick | 7.0.6-6 | 7.0.6-6.x |