Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-62343

Опубликовано: 29 июл. 2026
Источник: redhat
CVSS3: 4.7
EPSS Низкий

Описание

A flaw was found in ImageMagick, a widely used software for editing and manipulating digital images. A local user could provide a specially crafted, invalid kernel during a morphology operation. This action could trigger a heap buffer over-write, leading to a denial of service (DoS) for the ImageMagick application. This vulnerability primarily impacts the availability of the image processing service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6ImageMagickOut of support scope
Red Hat Enterprise Linux 7ImageMagickOut of support scope

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-805
https://bugzilla.redhat.com/show_bug.cgi?id=2508793ImageMagick: ImageMagick: Denial of Service via heap buffer over-write in morphology operation with invalid kernel

EPSS

Процентиль: 3%
0.00124
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
ubuntu
4 дня назад

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9.13-51 and 7.0.1-0 and above prior to 7.1.2-26, an invalid kernel can cause a heap buffer over-write when performing a morphology operation with a user supplied kernel. This issue has been fixed in versions 6.9.13-51 and 7.1.2-26.

CVSS3: 4.7
nvd
5 дней назад

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9.13-51 and 7.0.1-0 and above prior to 7.1.2-26, an invalid kernel can cause a heap buffer over-write when performing a morphology operation with a user supplied kernel. This issue has been fixed in versions 6.9.13-51 and 7.1.2-26.

CVSS3: 4.7
debian
5 дней назад

ImageMagick is free and open-source software used for editing and mani ...

CVSS3: 4.7
github
10 дней назад

ImageMagick: Heap Buffer Over-Write in morphology operation when an invalid kernel is provided

suse-cvrf
4 дня назад

Security update for ImageMagick

EPSS

Процентиль: 3%
0.00124
Низкий

4.7 Medium

CVSS3