The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted VIFF file.
https://github.com/ImageMagick/ImageMagick/issues/77
https://bugzilla.redhat.com/show_bug.cgi?id=1378743
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533452