Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-53462

Опубликовано: 10 июн. 2026
Источник: debian
EPSS Низкий

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:7.1.2.25+dfsg1-1package
imagemagicknot-affectedtrixiepackage
imagemagicknot-affectedbookwormpackage
imagemagicknot-affectedbullseyepackage

Примечания

  • https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-px7q-ggqj-hcf2

  • Fixed by: https://github.com/ImageMagick/ImageMagick/commit/6c8afb5bc8e408061acb14757f1cdf466fbfad48 (7.1.2-25)

  • Introduced by: https://github.com/ImageMagick/ImageMagick/commit/41c2d472d6a352955580893eb6be94131a0ac92f (7.1.2-22)

  • Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/1ce3a45eb58a3dda8b2cd77fb758a7fdbeabfea7 (6.9.13-50)

  • Introduced by: https://github.com/ImageMagick/ImageMagick6/commit/fee489246e3b62bff1a946b6d4ef32e81ead4799 (6.9.13-47)

  • Introduced by optimisation of CheckPrimitiveExtend method

EPSS

Процентиль: 14%
0.00227
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

CVSS3: 3.7
redhat
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

CVSS3: 5.9
nvd
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

CVSS3: 5.9
github
около 1 месяца назад

ImageMagick has a Use-After-Free when allocation in CheckPrimitiveExtent fails

CVSS3: 5.9
fstec
около 2 месяцев назад

Уязвимость функции CheckPrimitiveExtent консольного графического редактора ImageMagic, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 14%
0.00227
Низкий