Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-61464

Опубликовано: 15 июл. 2026
Источник: debian
EPSS Низкий

Описание

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:7.1.2.26+dfsg1-1package
imagemagickno-dsatrixiepackage

Примечания

  • https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-76q6-2p6h-xjqr

  • Fixed by: https://github.com/ImageMagick/ImageMagick/commit/378bfc12bf7bbc4d9ab081120873efef935ebd85 (7.1.2-26)

  • Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/d0aa5c9e09e0cf5e400309ca76ae886a980b0555 (6.9.13-51)

EPSS

Процентиль: 1%
0.00092
Низкий

Связанные уязвимости

CVSS3: 1.8
ubuntu
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

redhat
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

CVSS3: 1.8
nvd
19 дней назад

ImageMagick before 7.1.2-26 and 6.9.13-51 contains a heap-based buffer over-write vulnerability that occurs when running an X11 import with a crafted window title, which can result in heap memory corruption and denial of service.

suse-cvrf
6 дней назад

Security update for GraphicsMagick

suse-cvrf
6 дней назад

Security update for GraphicsMagick

EPSS

Процентиль: 1%
0.00092
Низкий