Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vgqj-4jhr-3wh5

Опубликовано: 01 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.3
CVSS3: 3.7

Описание

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

EPSS

Процентиль: 14%
0.00229
Низкий

6.3 Medium

CVSS4

3.7 Low

CVSS3

Дефекты

CWE-323

Связанные уязвимости

CVSS3: 3.7
ubuntu
около 1 месяца назад

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

CVSS3: 3.7
redhat
около 1 месяца назад

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

CVSS3: 3.7
nvd
около 1 месяца назад

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

CVSS3: 3.7
debian
около 1 месяца назад

ImageMagick before 7.1.2-22 contains an information disclosure vulnera ...

CVSS3: 3.7
redos
12 дней назад

Уязвимость ImageMagick

EPSS

Процентиль: 14%
0.00229
Низкий

6.3 Medium

CVSS4

3.7 Low

CVSS3

Дефекты

CWE-323