In ImageMagick 7.0.7-24 Q16, there is a heap-based buffer over-read in IsWEBPImageLossless in coders/webp.c. https://nvd.nist.gov/vuln/detail/CVE-2018-9135