From fb249609d447af88f0a2ef1b953d4be1184513ca Mon Sep 17 00:00:00 2001 From: Cristy Date: Tue, 27 Mar 2018 20:01:06 -0400 Subject: [PATCH] https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=7163 --- MagickCore/fx.c | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/MagickCore/fx.c b/MagickCore/fx.c index ab05a5953..2aeab5e02 100644 --- a/MagickCore/fx.c +++ b/MagickCore/fx.c @@ -1255,7 +1255,6 @@ static double FxGetSymbol(FxInfo *fx_info,const PixelChannel channel, { char *q, - subexpression[MagickPathExtent], symbol[MagickPathExtent]; const char @@ -1292,6 +1291,10 @@ static double FxGetSymbol(FxInfo *fx_info,const PixelChannel channel, point.y=(double) y; if (isalpha((int) ((unsigned char) *(p+1))) == 0) { + char + *subexpression; + + subexpression=AcquireString(expression); if (strchr("suv",(int) *p) != (char *) NULL) { switch (*p) @@ -1390,6 +1393,7 @@ static double FxGetSymbol(FxInfo *fx_info,const PixelChannel channel, if (*p == '.') p++; } + subexpression=DestroyString(subexpression); } length=GetImageListLength(fx_info->images); while (i < 0) -- 2.40.0