Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-56374

Опубликовано: 08 июл. 2026
Источник: debian
EPSS Низкий

Описание

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:7.1.2.19+dfsg1-1package
imagemagickpostponedtrixiepackage
imagemagicknot-affectedbookwormpackage
imagemagicknot-affectedbullseyepackage

Примечания

  • https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-w54j-7wpm-crhj

  • Fixed by: https://github.com/ImageMagick/ImageMagick/commit/22aef933133770706caafb93f814f5306dcca345 (7.1.2-19)

EPSS

Процентиль: 5%
0.00157
Низкий

Связанные уязвимости

CVSS3: 3.3
ubuntu
27 дней назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

CVSS3: 3.3
redhat
27 дней назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

CVSS3: 3.3
nvd
27 дней назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

CVSS3: 4
redos
12 дней назад

Уязвимость ImageMagick7

CVSS3: 3.3
github
27 дней назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

EPSS

Процентиль: 5%
0.00157
Низкий