VYPR

rpm package

suse/ImageMagick&distro=SUSE Linux Enterprise High Performance Computing 15 SP3-ESPOS

pkg:rpm/suse/ImageMagick&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-ESPOS

Vulnerabilities (2)

  • CVE-2022-44268Feb 6, 2023
    affected < 7.0.7.34-150200.10.42.1fixed 7.0.7.34-150200.10.42.1

    ImageMagick 7.1.0-49 is vulnerable to Information Disclosure. When it parses a PNG image (e.g., for resize), the resulting image could have embedded the content of an arbitrary. file (if the magick binary has permissions to read it).

  • CVE-2022-44267Feb 6, 2023
    affected < 7.0.7.34-150200.10.42.1fixed 7.0.7.34-150200.10.42.1

    ImageMagick 7.1.0-49 is vulnerable to Denial of Service. When it parses a PNG image (e.g., for resize), the convert process could be left waiting for stdin input.