Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-68950

Опубликовано: 30 дек. 2025
Источник: nvd
CVSS3: 4
CVSS3: 6.2
EPSS Низкий

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, Magick fails to check for circular references between two MVGs, leading to a stack overflow. This is a DoS vulnerability, and any situation that allows reading the mvg file will be affected. Version 7.1.2-12 fixes the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия до 7.1.2-12 (исключая)

EPSS

Процентиль: 3%
0.00017
Низкий

4 Medium

CVSS3

6.2 Medium

CVSS3

Дефекты

CWE-674

Связанные уязвимости

CVSS3: 4
ubuntu
16 дней назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, Magick fails to check for circular references between two MVGs, leading to a stack overflow. This is a DoS vulnerability, and any situation that allows reading the mvg file will be affected. Version 7.1.2-12 fixes the issue.

CVSS3: 4
debian
16 дней назад

ImageMagick is free and open-source software used for editing and mani ...

CVSS3: 4
github
16 дней назад

ImageMagick's failure to limit MVG mutual causes Stack Overflow

suse-cvrf
7 дней назад

Security update for ImageMagick

suse-cvrf
7 дней назад

Security update for ImageMagick

EPSS

Процентиль: 3%
0.00017
Низкий

4 Medium

CVSS3

6.2 Medium

CVSS3

Дефекты

CWE-674