CVE-2025-53015
- EPSS 0.1%
- Veröffentlicht 14.07.2025 19:31:27
- Zuletzt bearbeitet 15.07.2025 14:15:30
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.
CVE-2025-53014
- EPSS 0.06%
- Veröffentlicht 14.07.2025 18:15:23
- Zuletzt bearbeitet 26.08.2025 17:52:28
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions prior to 7.1.2-0 and 6.9.13-26 have a heap buffer overflow in the `InterpretImageFilename` function. The issue stems from an off-by-one error that...
CVE-2025-43965
- EPSS 0.02%
- Veröffentlicht 23.04.2025 00:00:00
- Zuletzt bearbeitet 29.04.2025 13:52:47
In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.
CVE-2025-46393
- EPSS 0.02%
- Veröffentlicht 23.04.2025 00:00:00
- Zuletzt bearbeitet 29.04.2025 13:52:47
In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).
CVE-2024-41817
- EPSS 11.59%
- Veröffentlicht 29.07.2024 16:15:05
- Zuletzt bearbeitet 21.11.2024 09:33:07
ImageMagick is a free and open-source software suite, used for editing and manipulating digital images. The `AppImage` version `ImageMagick` might use an empty path when setting `MAGICK_CONFIGURE_PATH` and `LD_LIBRARY_PATH` environment variables whil...
CVE-2023-5341
- EPSS 0.04%
- Veröffentlicht 19.11.2023 10:15:49
- Zuletzt bearbeitet 07.02.2025 03:15:10
A heap use-after-free flaw was found in coders/bmp.c in ImageMagick.
CVE-2023-3428
- EPSS 0.02%
- Veröffentlicht 04.10.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:17:14
A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local attacker to trick the user into opening a specially crafted file, resulting in an application crash and denial of service.
CVE-2022-48541
- EPSS 0.45%
- Veröffentlicht 22.08.2023 19:16:31
- Zuletzt bearbeitet 21.11.2024 07:33:29
A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "identify -help" command.
CVE-2021-40211
- EPSS 0.09%
- Veröffentlicht 22.08.2023 19:16:21
- Zuletzt bearbeitet 21.11.2024 06:23:45
An issue was discovered with ImageMagick 7.1.0-4 via Division by zero in function ReadEnhMetaFile of coders/emf.c.
CVE-2023-39978
- EPSS 0.04%
- Veröffentlicht 08.08.2023 06:15:47
- Zuletzt bearbeitet 21.11.2024 08:16:10
ImageMagick before 6.9.12-91 allows attackers to cause a denial of service (memory consumption) in Magick::Draw.