Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-56364

Опубликовано: 30 июн. 2026
Источник: nvd
CVSS3: 1.9
EPSS Низкий

Описание

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclosed device elements. Attackers with write access to the OpenCL cache directory can place malicious XML files to exhaust memory and cause denial of service.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия до 7.1.2-13 (исключая)

EPSS

Процентиль: 7%
0.00169
Низкий

1.9 Low

CVSS3

Дефекты

CWE-401

Связанные уязвимости

CVSS3: 1.9
ubuntu
около 1 месяца назад

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclosed device elements. Attackers with write access to the OpenCL cache directory can place malicious XML files to exhaust memory and cause denial of service.

CVSS3: 1.9
redhat
около 1 месяца назад

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclosed device elements. Attackers with write access to the OpenCL cache directory can place malicious XML files to exhaust memory and cause denial of service.

CVSS3: 1.9
debian
около 1 месяца назад

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in Lo ...

CVSS3: 1.9
redos
7 дней назад

Уязвимость ImageMagick7

CVSS3: 1.9
github
около 1 месяца назад

ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclosed device elements. Attackers with write access to the OpenCL cache directory can place malicious XML files to exhaust memory and cause denial of service.

EPSS

Процентиль: 7%
0.00169
Низкий

1.9 Low

CVSS3

Дефекты

CWE-401