Asymmetric denial of service In imagemagick
Description
In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 14 | 8:6.9.11.60+dfsg-1.5 | ||
debian 11 | 8:6.9.11.60+dfsg-1.3+deb11u2 | ||
debian 12 | 8:6.9.11.60+dfsg-1.5 | ||
debian 13 | 8:6.9.11.60+dfsg-1.5 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - |
Aliases
1. 2. 3. 4. 5.