CVE-2025-43965

In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.
Configurations

Configuration 1 (hide)

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

31 Dec 2025, 15:41

Type Values Removed Values Added
First Time Debian debian Linux
Imagemagick imagemagick
Debian
Imagemagick
CPE cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
References () https://github.com/ImageMagick/ImageMagick/commit/bac413a26073923d3ffb258adaab07fb3fe8fdc9 - () https://github.com/ImageMagick/ImageMagick/commit/bac413a26073923d3ffb258adaab07fb3fe8fdc9 - Patch
References () https://github.com/ImageMagick/Website/blob/main/ChangeLog.md#711-44---2025-02-22 - () https://github.com/ImageMagick/Website/blob/main/ChangeLog.md#711-44---2025-02-22 - Release Notes
References () https://lists.debian.org/debian-lts-announce/2025/04/msg00035.html - () https://lists.debian.org/debian-lts-announce/2025/04/msg00035.html - Mailing List

26 Apr 2025, 23:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/04/msg00035.html -
Summary
  • (es) En el procesamiento de imágenes MIFF en ImageMagick anterior a 7.1.1-44, la profundidad de la imagen se gestiona incorrectamente después de utilizar SetQuantumFormat.

23 Apr 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-23 15:16

Updated : 2025-12-31 15:41


NVD link : CVE-2025-43965

Mitre link : CVE-2025-43965

CVE.ORG link : CVE-2025-43965


JSON object : View

Products Affected

imagemagick

  • imagemagick

debian

  • debian_linux
CWE
CWE-131

Incorrect Calculation of Buffer Size