Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-53015

Опубликовано: 14 июл. 2025
Источник: debian
EPSS Низкий

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:7.1.1.47+dfsg1-2package
imagemagickfixed8:7.1.1.43+dfsg1-1+deb13u1trixiepackage
imagemagicknot-affectedbookwormpackage
imagemagicknot-affectedbullseyepackage

Примечания

  • https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-vmhh-8rxq-fp9g

  • Fixed by: https://github.com/ImageMagick/ImageMagick/commit/229fa96a988a21d78318bbca61245a6ed1ee33a0 (7.1.2-0)

  • Fixed by: https://github.com/ImageMagick/ImageMagick/commit/38631605e6ab744548a561797472cf8648bcfe26 (7.1.2-0)

  • Introduced by: https://github.com/ImageMagick/ImageMagick/commit/fc4f67bb1b8eb1b61ae70e401482844086949721 (7.1.1-7)

EPSS

Процентиль: 33%
0.0013
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
5 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.

CVSS3: 5.3
redhat
5 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.

CVSS3: 7.5
nvd
5 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-0, infinite lines occur when writing during a specific XMP file conversion command. Version 7.1.2-0 fixes the issue.

CVSS3: 7.5
github
5 месяцев назад

ImageMagick has XMP profile write that triggers hang due to unbounded loop

CVSS3: 7.5
fstec
5 месяцев назад

Уязвимость консольного графического редактора ImageMagick, связанная с недостаточным выделением памяти для операции, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 33%
0.0013
Низкий