CVE-2025-46393

In multispectral MIFF image processing in ImageMagick before 7.1.1-44, packet_size is mishandled (related to the rendering of all channels in an arbitrary order).
Configurations

Configuration 1 (hide)

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*

History

31 Dec 2025, 15:28

Type Values Removed Values Added
First Time Imagemagick
Imagemagick imagemagick
CPE cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
References () https://github.com/ImageMagick/ImageMagick/commit/81ac8a0d2eb21739842ed18c48c7646b7eef65b8 - () https://github.com/ImageMagick/ImageMagick/commit/81ac8a0d2eb21739842ed18c48c7646b7eef65b8 - Patch
References () https://github.com/ImageMagick/Website/blob/main/ChangeLog.md#711-44---2025-02-22 - () https://github.com/ImageMagick/Website/blob/main/ChangeLog.md#711-44---2025-02-22 - Release Notes

29 Apr 2025, 13:52

Type Values Removed Values Added
Summary
  • (es) En el procesamiento de imágenes MIFF multiespectrales en ImageMagick anterior a 7.1.1-44, packet_size se gestiona incorrectamente (relacionado con la representación de todos los canales en un orden arbitrario).

23 Apr 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-23 15:16

Updated : 2025-12-31 15:28


NVD link : CVE-2025-46393

Mitre link : CVE-2025-46393

CVE.ORG link : CVE-2025-46393


JSON object : View

Products Affected

imagemagick

  • imagemagick
CWE
CWE-131

Incorrect Calculation of Buffer Size