CVE Database
/

CVE-2022-1115

Back to search

CVE-2022-1115

Published: Aug 29, 2022

Modified: Aug 2, 2024

PUBLISHED

Description

A heap-buffer-overflow flaw was found in ImageMagick’s PushShortPixel() function of quantum-private.h file. This vulnerability is triggered when an attacker passes a specially crafted TIFF image file to ImageMagick for conversion, potentially leading to a denial of service.

VendorProductVersions

n/a

ImageMagick

affected
Fixed in ImageMagick6 v6.9.12-44, ImageMagick7 v7.1.0-29

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now