Null Pointer Dereference in ImageMagick PNM Coder Affects Popular Image Processing Tool
CVE-2026-93588
2.3LOW
What is CVE-2026-93588?
ImageMagick versions prior to 7.1.2-31 and 6.9.13-56 are susceptible to a NULL pointer dereference issue in the PNM coder. This vulnerability occurs when a resource limit is hit during the image processing of specially crafted PNM files. As a result, the failure to manage memory allocation leads to a crash of the application, potentially causing a denial of service. Users should prioritize upgrading to the latest version to mitigate this risk.
Affected Version(s)
ImageMagick 0 < 7.1.2-31
ImageMagick 0 < 6.9.13-56
ImageMagick 7.1.2-31