USN-4670-1: ImageMagick vulnerabilities
It was discovered that ImageMagick incorrectly handled certain specially crafted image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or other unspecified impact. This issue only affected Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 20.10. (CVE-2019-19948, CVE-2019-19949) It was discovered that ImageMagick incorrectly handled certain specially crafted image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service. (CVE-2020-27560)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-4670-1?
The severity of USN-4670-1 is considered high due to the potential for denial of service and other unspecified impacts.
How do I fix USN-4670-1?
To fix USN-4670-1, upgrade ImageMagick and its related packages to the recommended version 8:6.9.10.23+dfsg-2.1ubuntu13.1.
What versions of ImageMagick are affected by USN-4670-1?
USN-4670-1 affects ImageMagick version 6.9.10 and earlier in Ubuntu 20.10 and previous releases.
Are there any known exploits for USN-4670-1?
Currently, no specific exploits are publicly known for USN-4670-1, but the vulnerability could be leveraged for denial of service attacks.
What should I do if I cannot update due to USN-4670-1?
If you cannot update, consider limiting access to the affected applications and closely monitor for any suspicious activity.