First published: Mon May 29 2023(Updated: )
Shell command injection vulnerability via video:vsync or video:pixel-format options in VIDEO encoding/decoding <a href="https://github.com/ImageMagick/ImageMagick/issues/6338">https://github.com/ImageMagick/ImageMagick/issues/6338</a>
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2210660 is critical due to the potential for shell command injection.
To fix REDHAT-BUG-2210660, update ImageMagick to the latest version that addresses the vulnerability.
The main risks associated with REDHAT-BUG-2210660 include unauthorized command execution and system compromise.
Users of ImageMagick who utilize the VIDEO encoding/decoding options are affected by REDHAT-BUG-2210660.
If you are affected by REDHAT-BUG-2210660, discontinue use of the vulnerable features until you can apply the necessary update.