From 4e68394eb43bc92229991799794ca5a3a96ff8e6 Mon Sep 17 00:00:00 2001 From: Cristy Date: Fri, 23 Mar 2018 13:42:06 -0400 Subject: [PATCH] https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=7078 --- MagickCore/draw.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/MagickCore/draw.c b/MagickCore/draw.c index 811ff6da7..34cbdf6e5 100644 --- a/MagickCore/draw.c +++ b/MagickCore/draw.c @@ -1521,7 +1521,7 @@ static MagickBooleanType DrawDashPolygon(const DrawInfo *draw_info, for (i=0; primitive_info[i].primitive != UndefinedPrimitive; i++) ; number_vertices=(size_t) i; dash_polygon=(PrimitiveInfo *) AcquireQuantumMemory((size_t) - (2UL*(number_vertices+3UL)+3UL),sizeof(*dash_polygon)); + (2UL*(number_vertices+6UL)+6UL),sizeof(*dash_polygon)); if (dash_polygon == (PrimitiveInfo *) NULL) return(MagickFalse); clone_info=CloneDrawInfo((ImageInfo *) NULL,draw_info); -- 2.40.0