ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-1, ImageMagick is vulnerable to heap-buffer overflow read around the handling of images with separate alpha channels when performing image magnification in ReadOneMNGIMage. This can likely be used to leak subsequent memory contents into the output image. This issue has been patched in version 7.1.2-1.
Metrics
Affected Vendors & Products
References
History
Fri, 15 Aug 2025 19:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:* |
Thu, 14 Aug 2025 06:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Imagemagick
Imagemagick imagemagick |
|
Vendors & Products |
Imagemagick
Imagemagick imagemagick |
|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Wed, 13 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 13 Aug 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-1, ImageMagick is vulnerable to heap-buffer overflow read around the handling of images with separate alpha channels when performing image magnification in ReadOneMNGIMage. This can likely be used to leak subsequent memory contents into the output image. This issue has been patched in version 7.1.2-1. | |
Title | ImageMagick: heap-buffer overflow read in MNG magnification with alpha | |
Weaknesses | CWE-122 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-08-13T14:35:59.815Z
Reserved: 2025-08-04T17:34:24.421Z
Link: CVE-2025-55004

Updated: 2025-08-13T14:35:45.062Z

Status : Analyzed
Published: 2025-08-13T14:15:32.733
Modified: 2025-08-15T19:31:52.070
Link: CVE-2025-55004
