CVE-2020-13902 - log back

CVE-2020-13902 edited at 28 Jun 2020 16:05:38
References
https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20920
+ https://github.com/ImageMagick/ImageMagick/discussions/2132
+ https://github.com/ImageMagick/ImageMagick/commit/824f344ceb823e156ad6e85314d79c087933c2a0
Notes
+ Fixed in 7.0.10-20.
CVE-2020-13902 edited at 08 Jun 2020 20:08:12
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Information disclosure
Description
+ An out-of-bounds read has been found in the TIFF image decoding part of imagemagick <= 7.0.10-17, in BlobToStringInfo in MagickCore/string.c.
References
+ https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20920
Notes
CVE-2020-13902 created at 08 Jun 2020 20:07:15