Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-46393

Опубликовано: 23 апр. 2025
Источник: redhat
CVSS3: 2.9

Описание

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

A flaw was found the inImageMagick package. In multispectral MIFF image processing in ImageMagick, packet_size is mishandled. This issue is related to the rendering of all channels in an arbitrary order.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6ImageMagickOut of support scope
Red Hat Enterprise Linux 7ImageMagickOut of support scope

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-131
https://bugzilla.redhat.com/show_bug.cgi?id=2361888ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing

2.9 Low

CVSS3

Связанные уязвимости

CVSS3: 2.9
ubuntu
4 месяца назад

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

CVSS3: 2.9
nvd
4 месяца назад

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

CVSS3: 2.9
debian
4 месяца назад

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, ...

CVSS3: 2.9
github
4 месяца назад

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).

suse-cvrf
3 месяца назад

Security update for ImageMagick

2.9 Low

CVSS3