CVE-2025-68469: ImageMagick vulnerable to heap-buffer-overflow
Published Dec 18, 2025
·Updated
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.1-14, ImageMagick crashes when processing a crafted TIFF file. Version 7.1.1-14 fixes the issue.
Affected Software
2 affected components
ImageMagick ImageMagick<7.1.1-14
ImageMagick ImageMagick<7.1.1-14
Event History
Dec 18, 2025
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
DescriptionWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-68469?
CVE-2025-68469 is a critical vulnerability that leads to application crashes when processing malicious TIFF files.
2
How do I fix CVE-2025-68469?
To fix CVE-2025-68469, upgrade ImageMagick to version 7.1.1-14 or later.
3
What are the potential impacts of CVE-2025-68469?
The potential impacts of CVE-2025-68469 include application crashes and denial of service when handling crafted TIFF files.
4
Which versions of ImageMagick are affected by CVE-2025-68469?
CVE-2025-68469 affects all versions of ImageMagick prior to 7.1.1-14.
5
Is there a workaround for CVE-2025-68469?
Currently, there are no effective workarounds for CVE-2025-68469 other than upgrading to the patched version.