First published: Wed Apr 09 2025(Updated: )
GraphicsMagick before 8e56520 has a heap-based buffer over-read in ReadJXLImage in coders/jxl.c, related to an ImportViewPixelArea call.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick | <8e56520 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-32460 is classified as a moderate severity vulnerability due to its potential for causing a heap-based buffer over-read.
To fix CVE-2025-32460, update GraphicsMagick to version 8e56520 or later.
CVE-2025-32460 is a heap-based buffer over-read vulnerability that affects the ReadJXLImage function in GraphicsMagick.
GraphicsMagick versions prior to 8e56520 are affected by CVE-2025-32460.
CVE-2025-32460 can lead to potential information disclosure or application instability, impacting the reliability of systems using affected versions.