Heap-based buffer overflow in the DrawImage function in magick/draw.c in ImageMagick before 6.9.5-5 allows remote attackers to cause a denial of service (application crash) via a crafted image file. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-10046