ReadXBMImage in coders/xbm.c in ImageMagick before 7.0.8-9 leaves data uninitialized when processing an XBM file that has a negative pixel value. If the affected code is used as a library loaded into a process that includes sensitive information, that information sometimes can be leaked via the image data.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | < 5ff2826c998370bf7f9ae26fe802140d220e3510 |