VYPR

rpm package

opensuse/ImageMagick&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/ImageMagick&distro=openSUSE%20Tumbleweed

Vulnerabilities (177)

  • CVE-2026-53465MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-25, a crafted multi-frame can result in a heap buffer over-write when encoding it with the SF3 encoder. This issue has been patched in version 7.1.2-25.

  • CVE-2026-53463MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when passing incorrect arguments in the distort operation a null pointer deference will occur. This issue has been patched in versions 6.9.13-5

  • CVE-2026-53462MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when an allocation fails in CheckPrimitiveExtent this can result in a heap-use-after-free and result in a crash. This issue has been patched in

  • CVE-2026-53461HigJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, an incorrect loop in the ICON decoder can result in an out of bounds heap write resulting in a crash. This issue has been patched in versions 6

  • CVE-2026-53460HigJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, a missing check for maximum memory request in AcquireAlignedMemory could trigger an out-of-Memory condition. This issue has been patched in ver

  • CVE-2026-49219MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, an incorrect parsing of the filename can result in a policy bypass and read files disallowed by a security policy using a symlink. This issue h

  • CVE-2026-49218HigJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check in the DCM decoder could result in an image with invalid dimensions and that could cause crashes in other operation. This issue

  • CVE-2026-48994MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check of a return value could lead to a heap buffer over-write in the MAT decoder on 32-bit systems. This issue has been patched in v

  • CVE-2026-48734MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, a crafted MVG file could result in a stack overflow due to a missing depth or visited-set check. This issue has been patched in versions 6.9.13

  • CVE-2026-48724MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-24, when using an image with mask the Floyd-Steinberg dithering method it will cause a negative heap buffer over-write. This issue has been patched in version 7.1

  • CVE-2026-47166MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-read in the server process. This issue has been

  • CVE-2026-47165MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, the distributed pixel cache was originally designed to operate without a challenge–response authentication model. This has been changed in vers

  • CVE-2026-46693MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can hijack a file descriptor in the server process when a race condition is m

  • CVE-2026-46692MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-write in the server process. This issue has been

  • CVE-2026-46559MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifying certain options. This issue has been pa

  • CVE-2026-46557MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-23, due to a missing depth check a stack overflow can occur in the fx operation by passing a crafted argument. This issue has been patched in version 7.1.2-23.

  • CVE-2026-46523MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.

  • CVE-2026-46522HigJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in CPU exhaustion. Versions 7.1.2.23 and 6.9.

  • CVE-2026-46520HigJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This issue has been patched in versions 6.9.13-48

  • CVE-2026-45664MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excess

Page 1 of 9