Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-61870

Опубликовано: 11 июл. 2026
Источник: nvd
CVSS3: 2.9
CVSS3: 7.5
EPSS Низкий

Описание

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to exhaust available memory and cause denial of service.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия до 6.9.13-51 (исключая)
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия от 7.0.0-0 (включая) до 7.1.2-26 (исключая)

EPSS

Процентиль: 9%
0.00191
Низкий

2.9 Low

CVSS3

7.5 High

CVSS3

Дефекты

CWE-401

Связанные уязвимости

CVSS3: 2.9
ubuntu
22 дня назад

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to exhaust available memory and cause denial of service.

CVSS3: 2.9
redhat
23 дня назад

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to exhaust available memory and cause denial of service.

CVSS3: 2.9
debian
23 дня назад

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in th ...

CVSS3: 2.9
github
23 дня назад

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to exhaust available memory and cause denial of service.

EPSS

Процентиль: 9%
0.00191
Низкий

2.9 Low

CVSS3

7.5 High

CVSS3

Дефекты

CWE-401