Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

endless loop in ReadCAPTIONImage #771

Closed
noirfate opened this issue Sep 21, 2017 · 2 comments
Closed

endless loop in ReadCAPTIONImage #771

noirfate opened this issue Sep 21, 2017 · 2 comments
Labels

Comments

@noirfate
Copy link

noirfate commented Sep 21, 2017

Version: ImageMagick 7.0.7-3 x86-64

I add a crafted font in ~/.config/ImageMagick/type.xml

 format="ttf"
 name="test"
 fullname="test font"
 family="URW Gothic"
 glyphs="/root/test.ttf"

and then run

magick -background lightblue -fill blue -font test -size 480x360 caption:'hello world' 1.gif

magick will always occupy 100% CPU. After I took a look, it maybe enter a endless loop in ReadCAPTIONImage.

you can get the font from https://github.com/noirfate/test/blob/master/test.ttf

@mikayla-grace
Copy link

Thanks for the problem report. We can reproduce it and will have a patch to fix it in GIT master branch @ https://github.com/ImageMagick/ImageMagick later today. The patch will be available in the beta releases of ImageMagick @ http://www.imagemagick.org/download/beta/ by sometime tomorrow.

@nohmask
Copy link

nohmask commented Sep 26, 2017

This was assigned CVE-2017-14741.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Development

No branches or pull requests

4 participants