CVE-2021-3574: Low severity imagemagick vulnerability
A vulnerability was found in ImageMagick-7.0.11-5, where executing a crafted file with the convert command, ASAN detects memory leaks.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-3574?
CVE-2021-3574 is a vulnerability found in ImageMagick-7.0.11-5 where executing a crafted file with the convert command can lead to memory leaks.
How severe is CVE-2021-3574?
CVE-2021-3574 has a severity rating of 3.3 (low).
Which software versions are affected by CVE-2021-3574?
The affected software versions include ImageMagick-7.0.11-5 and various versions of imagemagick for Ubuntu and Debian.
How can I fix CVE-2021-3574?
To fix CVE-2021-3574, update ImageMagick to version 8:6.9.11.60+dfsg-1.3ubuntu1 (for Ubuntu) or 8:6.9.11.60+dfsg-1.6 (for Debian).
Where can I find more information about CVE-2021-3574?
You can find more information about CVE-2021-3574 at the following links: [CVE-2021-3574](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3574), [Ubuntu Security Notice USN-5736-1](https://ubuntu.com/security/notices/USN-5736-1), [Ubuntu Security Notice USN-5736-2](https://ubuntu.com/security/notices/USN-5736-2).