Join GitHub today
GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.Sign up
Infinite loop in ReadOneMNGImage (src/coders/png.c) #1095
In latest commit of ImageMagick, there is an infinite loop in ReadOneMNGImage function of src/coders/png.c file, which could be triggered by the attached POC.
The issue is in the following loop, and seems that image_info is never updated inside the loop (line 7428).
5244 static Image ReadOneMNGImage(MngInfo mng_info, const ImageInfo *image_info,
Steps to Reproduce