Memory Leak in ImageMagick Software Affects Image Processing Capabilities
CVE-2025-53019

3.7LOW

Key Information:

Vendor
CVE Published:
14 July 2025

What is CVE-2025-53019?

A memory leak vulnerability exists in ImageMagick's magick stream command when users specify multiple consecutive %d format specifiers in a filename template. This flaw can potentially lead to increased memory usage during image processing tasks, which may degrade performance over time. Users are advised to update to versions 7.1.2-0 or 6.9.13-26 to mitigate this issue and ensure optimal functionality.

Affected Version(s)

ImageMagick < 7.1.2-0 < 7.1.2-0

ImageMagick < 6.9.13-26 < 6.9.13-26

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-53019 : Memory Leak in ImageMagick Software Affects Image Processing Capabilities