Количество 14
Количество 14
CVE-2025-57803
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2.
CVE-2025-57803
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2.
CVE-2025-57803
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2.
CVE-2025-57803
ImageMagick is free and open-source software used for editing and mani ...
ROS-20250905-10
Уязвимость ImageMagick7
ROS-20250905-09
Уязвимость ImageMagick
GHSA-mxvv-97wh-cfmm
ImageMagick (WriteBMPImage): 32-bit integer overflow when writing BMP scanline stride → heap buffer overflow
ELSA-2025-16313
ELSA-2025-16313: ImageMagick security update (IMPORTANT)
BDU:2025-11265
Уязвимость функции bytes_per_line() компонента coders/bmp.c консольного графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2025:03150-1
Security update for ImageMagick
SUSE-SU-2025:03164-1
Security update for ImageMagick
SUSE-SU-2025:03152-1
Security update for ImageMagick
SUSE-SU-2025:03151-1
Security update for ImageMagick
SUSE-SU-2025:03113-1
Security update for ImageMagick
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-57803 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2025-57803 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2025-57803 ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-28 and 7.1.2-2 for ImageMagick's 32-bit build, a 32-bit integer overflow in the BMP encoder’s scanline-stride computation collapses bytes_per_line (stride) to a tiny value while the per-row writer still emits 3 × width bytes for 24-bpp images. The row base pointer advances using the (overflowed) stride, so the first row immediately writes past its slot and into adjacent heap memory with attacker-controlled bytes. This is a classic, powerful primitive for heap corruption in common auto-convert pipelines. This issue has been patched in versions 6.9.13-28 and 7.1.2-2. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2025-57803 ImageMagick is free and open-source software used for editing and mani ... | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
ROS-20250905-10 Уязвимость ImageMagick7 | CVSS3: 8.8 | 0% Низкий | 2 месяца назад | |
ROS-20250905-09 Уязвимость ImageMagick | CVSS3: 8.8 | 0% Низкий | 2 месяца назад | |
GHSA-mxvv-97wh-cfmm ImageMagick (WriteBMPImage): 32-bit integer overflow when writing BMP scanline stride → heap buffer overflow | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
ELSA-2025-16313 ELSA-2025-16313: ImageMagick security update (IMPORTANT) | 26 дней назад | |||
BDU:2025-11265 Уязвимость функции bytes_per_line() компонента coders/bmp.c консольного графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | 3 месяца назад | |
SUSE-SU-2025:03150-1 Security update for ImageMagick | около 2 месяцев назад | |||
SUSE-SU-2025:03164-1 Security update for ImageMagick | около 2 месяцев назад | |||
SUSE-SU-2025:03152-1 Security update for ImageMagick | около 2 месяцев назад | |||
SUSE-SU-2025:03151-1 Security update for ImageMagick | около 2 месяцев назад | |||
SUSE-SU-2025:03113-1 Security update for ImageMagick | 2 месяца назад |
Уязвимостей на страницу