Memory Leak in ImageMagick Software Affects Image Processing Capabilities
CVE-2025-53019
3.7LOW
What is CVE-2025-53019?
A memory leak vulnerability exists in ImageMagick's magick stream command when users specify multiple consecutive %d format specifiers in a filename template. This flaw can potentially lead to increased memory usage during image processing tasks, which may degrade performance over time. Users are advised to update to versions 7.1.2-0 or 6.9.13-26 to mitigate this issue and ensure optimal functionality.
Affected Version(s)
ImageMagick < 7.1.2-0 < 7.1.2-0
ImageMagick < 6.9.13-26 < 6.9.13-26
References
CVSS V3.1
Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved