ImageMagick: Heap Buffer Underwrite in Floyd-Steinberg depth dithering
CVE-2026-48724
5.5MEDIUM
What is CVE-2026-48724?
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-24, when using an image with mask the Floyd-Steinberg dithering method it will cause a negative heap buffer over-write. This issue has been patched in version 7.1.2-24.
Affected Version(s)
ImageMagick < 7.1.2-24