First published: Tue Feb 15 2022(Updated: )
A flaw was found in ImageMagick. The vulnerability occurs due to improper use of open functions and leads to a denial of service. This flaw allows an attacker to crash the system.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/imagemagick 6.9.12 | <34 | 34 |
redhat/imagemagick 7.1.0 | <19 | 19 |
ubuntu/imagemagick | <8:6.9.11.60+dfsg-1.3ubuntu0.22.04.3+ | 8:6.9.11.60+dfsg-1.3ubuntu0.22.04.3+ |
ubuntu/imagemagick | <8:6.9.11.60+dfsg-1.3ubuntu1 | 8:6.9.11.60+dfsg-1.3ubuntu1 |
ubuntu/imagemagick | <8:6.9.11.60+dfsg-1.3ubuntu0.22.10.1 | 8:6.9.11.60+dfsg-1.3ubuntu0.22.10.1 |
ubuntu/imagemagick | <8:6.9.11.60+dfsg-1.3ubuntu1 | 8:6.9.11.60+dfsg-1.3ubuntu1 |
<6.9.12-9 | ||
>=7.1.0-0<7.1.0-19 | ||
ImageMagick ImageMagick | <6.9.12-9 | |
ImageMagick ImageMagick | >=7.1.0-0<7.1.0-19 | |
debian/imagemagick | <=8:6.9.11.60+dfsg-1.3+deb11u1 | 8:6.9.10.23+dfsg-2.1+deb10u1 8:6.9.10.23+dfsg-2.1+deb10u5 8:6.9.11.60+dfsg-1.6 8:6.9.12.98+dfsg1-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-4219 is a vulnerability found in ImageMagick that allows an attacker to crash the system by exploiting improper use of open functions.
CVE-2021-4219 has a severity rating of 5.5 (medium).
CVE-2021-4219 affects ImageMagick versions 8:6.9.11.60+dfsg-1.3ubuntu0.22.04.3+ and 8:6.9.11.60+dfsg-1.3ubuntu1.
To fix CVE-2021-4219, update ImageMagick to version 8:6.9.11.60+dfsg-1.3ubuntu0.22.04.3+ or 8:6.9.11.60+dfsg-1.3ubuntu1.