Buffer Overflow Vulnerability in ImageMagick Product by ImageMagick
CVE-2022-28463

7.8HIGH

Key Information:

Vendor
CVE Published:
8 May 2022

Summary

ImageMagick version 7.1.0-27 is identified to have a buffer overflow vulnerability that may allow attackers to execute arbitrary code or cause a denial of service. This issue arises from improper handling of certain image formats. Users are urged to update to secure versions promptly to safeguard against possible exploitation.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.