Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-53462

Опубликовано: 10 июн. 2026
Источник: redhat
CVSS3: 3.7
EPSS Низкий

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

A flaw was found in ImageMagick. When an allocation fails in the CheckPrimitiveExtent function, it can lead to a heap-use-after-free vulnerability. This memory corruption issue can result in a denial of service (DoS) by causing the application to crash.

Отчет

This flaw in ImageMagick is rated as Low impact. A heap-use-after-free vulnerability, triggered by a memory allocation failure during image processing, can lead to a denial of service. The high attack complexity required for exploitation reduces the overall risk to system availability in Red Hat environments.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6ImageMagickOut of support scope
Red Hat Enterprise Linux 7ImageMagickOut of support scope

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-825
https://bugzilla.redhat.com/show_bug.cgi?id=2487761ImageMagick: ImageMagick: Denial of Service due to heap-use-after-free in CheckPrimitiveExtent

EPSS

Процентиль: 14%
0.00227
Низкий

3.7 Low

CVSS3

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

CVSS3: 5.9
nvd
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.

CVSS3: 5.9
debian
около 2 месяцев назад

ImageMagick is free and open-source software used for editing and mani ...

CVSS3: 5.9
github
около 1 месяца назад

ImageMagick has a Use-After-Free when allocation in CheckPrimitiveExtent fails

EPSS

Процентиль: 14%
0.00227
Низкий

3.7 Low

CVSS3