REDHAT-BUG-2210657: Medium severity imagemagick vulnerability
Published May 29, 2023
·Updated
Undefined behaviors of casting double to sizet in svg, mvg and other coders (recurring bugs of CVE-2022-32546) https://github.com/ImageMagick/ImageMagick/issues/6341
Affected Software
1 affected component
ImageMagick
Event History
May 29, 2023
Data Sourced
via Red Hat·05:09 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2210657?
The severity of REDHAT-BUG-2210657 is currently under assessment by the Red Hat security team.
2
How do I fix REDHAT-BUG-2210657?
To fix REDHAT-BUG-2210657, update your ImageMagick software to the latest version that addresses this casting issue.
3
What systems are impacted by REDHAT-BUG-2210657?
REDHAT-BUG-2210657 affects systems using vulnerable versions of ImageMagick.
4
What is the nature of the issue in REDHAT-BUG-2210657?
The issue in REDHAT-BUG-2210657 involves undefined behaviors when casting double to size_t in multiple coders.
5
Is there a workaround for REDHAT-BUG-2210657?
Currently, there is no documented workaround for REDHAT-BUG-2210657, so it is recommended to apply the necessary updates.