Buffer overflow in the ReadVIFFImage function in coders/viff.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a crafted file. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-10066