Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-56379

Опубликовано: 23 июн. 2026
Источник: ubuntu
Приоритет: medium
CVSS3: 8.1

Описание

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.

РелизСтатусПримечание
devel

not-affected

esm-apps/focal

released

8:6.9.10.23+dfsg-2.1ubuntu11.11+esm14
esm-apps/jammy

released

8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm14
esm-apps/noble

released

8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13
esm-apps/resolute

not-affected

esm-infra-legacy/trusty

released

8:6.7.7.10-6ubuntu3.13+esm25
esm-infra-legacy/xenial

released

8:6.8.9.9-7ubuntu5.16+esm24
esm-infra/bionic

released

8:6.9.7.4+dfsg-16ubuntu6.15+esm16
jammy

needed

noble

needed

Показывать по

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
redhat
3 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.

CVSS3: 8.1
nvd
3 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.

CVSS3: 8.1
debian
3 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection ...

suse-cvrf
около 1 месяца назад

Security update for GraphicsMagick

suse-cvrf
около 2 месяцев назад

Security update for GraphicsMagick

8.1 High

CVSS3