High severity8.8NVD Advisory· Published Oct 14, 2019· Updated Jun 17, 2026
CVE-2019-17541
CVE-2019-17541
Description
ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*range: <6.9.10-55
- (no CPE)range: <7.0.8-55
- ImageMagick/ImageMagickdescription
Patches
Vulnerability mechanics
References
4- github.com/ImageMagick/ImageMagick/commit/39f226a9c137f547e12afde972eeba7551124493nvdPatchThird Party Advisory
- github.com/ImageMagick/ImageMagick/compare/7.0.8-54...7.0.8-55nvdPatchThird Party Advisory
- github.com/ImageMagick/ImageMagick/issues/1641nvdExploitPatchThird Party Advisory
- bugs.chromium.org/p/oss-fuzz/issues/detailnvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.