imagemagick is vulnerable to denial of service. The vulnerability exists in ReadTIFFImage
function of tiff.c
due to a heap buffer overflow which allows an attacker to cause an application crash via a malicious input.
access.redhat.com/security/cve/CVE-2022-1115
bugzilla.redhat.com/show_bug.cgi?id=2067022
github.com/ImageMagick/ImageMagick/commit/c8718305f120293d8bf13724f12eed885d830b09
github.com/ImageMagick/ImageMagick/issues/4974
github.com/ImageMagick/ImageMagick6/commit/1f860f52bd8d58737ad883072203391096b30b51
secdb.alpinelinux.org/edge/community.yaml
secdb.alpinelinux.org/v3.16/community.yaml