Medium severity5.5NVD Advisory· Published Jun 16, 2023· Updated Jun 17, 2026
CVE-2023-3195
CVE-2023-3195
Description
A stack-based buffer overflow issue was found in ImageMagick's coders/tiff.c. This flaw allows an attacker to trick the user into opening a specially crafted malicious tiff file, causing an application to crash, resulting in a denial of service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6(expand)+ 1 more
- (no CPE)
- (no CPE)
- osv-coords4 versionspkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5
< 6.8.8.1-71.192.1+ 3 more
- (no CPE)range: < 6.8.8.1-71.192.1
- (no CPE)range: < 6.8.8.1-71.192.1
- (no CPE)range: < 6.8.8.1-71.192.1
- (no CPE)range: < 6.8.8.1-71.192.1
Patches
Vulnerability mechanics
References
7- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- github.com/ImageMagick/ImageMagick/commit/f620340935777b28fa3f7b0ed7ed6bd86946934cnvdPatch
- github.com/ImageMagick/ImageMagick6/commit/85a370c79afeb45a97842b0959366af5236e9023nvdPatch
- www.openwall.com/lists/oss-security/2023/05/29/1nvdExploitMailing ListPatchThird Party Advisory
- access.redhat.com/security/cve/CVE-2023-3195nvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/45DUUXYMAEEAW55GSLAXN25VPKCRAIDA/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4UFQJCYJ23HWHNDOVKBHZQ7HCXXL6MM3/nvd
News mentions
0No linked articles in our index yet.