CVE-2020-27758: Integer Overflow
A flaw was found in ImageMagick in coders/txt.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of type unsigned long long. This would most likely lead to an impact to application availability, but could potentially cause other problems related to undefined behavior. This flaw affects ImageMagick versions prior to 7.0.8-68.
Other sources
In ImageMagick, there are outside the range of representable values of type 'unsigned long long' bugs at coders/txt.c.
Reference: https://github.com/ImageMagick/ImageMagick/issues/1719
Upstream patch: https://github.com/ImageMagick/ImageMagick/commit/f0a8d407b2801174fd8923941a9e7822f7f9a506
— Red Hat
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this ImageMagick flaw?
The vulnerability ID for this ImageMagick flaw is CVE-2020-27758.
What is the severity level of CVE-2020-27758?
The severity level of CVE-2020-27758 is medium (3.3).
How does the ImageMagick flaw in coders/txt.c impact applications?
The flaw in coders/txt.c can lead to undefined behavior and values outside the range of type `unsigned long long`, potentially impacting application availability.
Which versions of ImageMagick are affected by CVE-2020-27758?
The affected versions of ImageMagick are 8:6.9.10.23+dfsg-2.1ubuntu11.4, 8:6.9.10.23+dfsg-2.1ubuntu13.3, 8:6.9.7.4+dfsg-16ubuntu6.11, 8:6.9.11.24+dfsg-1, 8:6.9.10.23+dfsg-2.1+deb10u5, 8:6.9.11.60+dfsg-1.3+deb11u1, 8:6.9.11.60+dfsg-1.6, 6.9.10-68, 7.0.8-68, and ImageMagick 7.0.8.
Are there any remediation steps available?
Yes, there are remediation steps available. Please refer to the official security notice or vendor advisories for detailed remediation information.