Логотип exploitDog
bind:CVE-2026-23876
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-23876

Количество 11

Количество 11

ubuntu логотип

CVE-2026-23876

2 месяца назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2026-23876

2 месяца назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2026-23876

2 месяца назад

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2026-23876

2 месяца назад

ImageMagick is free and open-source software used for editing and mani ...

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2026-00645

2 месяца назад

Уязвимость функции ReadXBMImage() консольного графического редактора ImageMagick, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 8.1
EPSS: Низкий
oracle-oval логотип

ELSA-2026-3058

19 дней назад

ELSA-2026-3058: ImageMagick security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0503-1

около 1 месяца назад

Security update for ImageMagick

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0384-1

около 2 месяцев назад

Security update for ImageMagick

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0438-1

около 2 месяцев назад

Security update for ImageMagick

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0437-1

около 2 месяцев назад

Security update for ImageMagick

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20337-1

20 дней назад

Security update for ImageMagick

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-23876

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
0%
Низкий
2 месяца назад
redhat логотип
CVE-2026-23876

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
0%
Низкий
2 месяца назад
nvd логотип
CVE-2026-23876

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.

CVSS3: 8.1
0%
Низкий
2 месяца назад
debian логотип
CVE-2026-23876

ImageMagick is free and open-source software used for editing and mani ...

CVSS3: 8.1
0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-00645

Уязвимость функции ReadXBMImage() консольного графического редактора ImageMagick, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 8.1
0%
Низкий
2 месяца назад
oracle-oval логотип
ELSA-2026-3058

ELSA-2026-3058: ImageMagick security update (IMPORTANT)

19 дней назад
suse-cvrf логотип
SUSE-SU-2026:0503-1

Security update for ImageMagick

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0384-1

Security update for ImageMagick

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0438-1

Security update for ImageMagick

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0437-1

Security update for ImageMagick

около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20337-1

Security update for ImageMagick

20 дней назад

Уязвимостей на страницу