VYPR

rpm package

opensuse/ImageMagick&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/ImageMagick&distro=openSUSE%20Tumbleweed

Vulnerabilities (177)

  • CVE-2026-45624MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifying specific arguments. This issue has bee

  • CVE-2026-45359MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing the connected components operation. This

  • CVE-2026-45358MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bounds read of a single byte in the meta encoder. This issue has been patched in ve

  • CVE-2026-45031MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource policy when decoding a PSD image. Other secur

  • CVE-2026-42326MedJun 10, 2026
    affected < 7.1.2.25-2.1fixed 7.1.2.25-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single byte. This issue has been patched in vers

  • CVE-2026-42050MedMay 11, 2026
    affected < 7.1.2.22-1.1fixed 7.1.2.22-1.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-21 and 6.9.13-46, a malicious MIFF file could trigger an overflow when a user opens it in the display tool and right-clicks a tile to invoke the Load / Update menu item.

  • CVE-2026-40312MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, an off by one error in the MSL decoder could result in a crash when a malicous MSL file is read. This issue has been fixed in version 7.1.2-19.

  • CVE-2026-40311MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 and 6.9.13-44 contain a heap use-after-free vulnerability that can cause a crash when reading and printing values from an invalid XMP profile. This issue has bee

  • CVE-2026-40310MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2-19 and 6.9.13-44, contain a heap out-of-bounds write in the JP2 encoder with when a user specifies an invalid sampling index. This issue has been fixed in vers

  • CVE-2026-40183MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, the JXL encoder has an heap write overflow when a user specifies that the image should be encoded as 16 bit floats. This issue has been fixed in version 7.1.

  • CVE-2026-40169MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, a crafted image could result in an out of bounds heap write when writing a yaml or json output, resulting in a crash. This issue has been fixed in version 7.

  • CVE-2026-34238MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, an integer overflow in the despeckle operation causes a heap buffer overflow on 32-bit builds that will result in an out of bounds write.

  • CVE-2026-33908HigApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, Magick frees the memory of the XML tree via the `DestroyXMLTree()` function; however, this process is executed recursively with no depth l

  • CVE-2026-33905MedApr 13, 2026
    affected < 7.1.2.19-1.1fixed 7.1.2.19-1.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the -sample operation has an out of bounds read when an specific offset is set through the `sample:offset` define that could lead to an ou

  • CVE-2026-33902MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a stack overflow vulnerability in ImageMagick's FX expression parser allows an attacker to crash the process by providing a deeply nested

  • CVE-2026-33901HigApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds write when processing a crafted image. This issue h

  • CVE-2026-33900MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the viff encoder contains an integer truncation/wraparound issue on 32-bit builds that could trigger an out of bounds heap write, potentia

  • CVE-2026-33899MedApr 13, 2026
    affected < 7.1.2.19-2.1fixed 7.1.2.19-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-189 and 6.9.13-44, when `Magick` parses an XML file it is possible that a single zero byte is written out of the bounds. This issue has been fixed in versions 6.

  • CVE-2026-33536MedMar 26, 2026
    affected < 7.1.2.18-2.1fixed 7.1.2.18-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, due to an incorrect return value on certain platforms a pointer is incremented past the end of a buffer that is on the stack and that could result in an

  • CVE-2026-33535MedMar 26, 2026
    affected < 7.1.2.18-2.1fixed 7.1.2.18-2.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds write of a zero byte exists in the X11 `display` interaction path that could lead to a crash. Versions 7.1.2-18 and 6.9.13-43 patch the

Page 2 of 9