First published: Thu Sep 21 2023(Updated: )
It was discovered that ImageMagick did not properly handle memory when processing the -help option. An attacker could potentially use this issue to cause a crash.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/imagemagick | <8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 | 8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 |
=20.04 | ||
All of | ||
ubuntu/imagemagick-6.q16 | <8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 | 8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 |
=20.04 | ||
All of | ||
ubuntu/imagemagick-6.q16hdri | <8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 | 8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1 |
=20.04 | ||
All of | ||
ubuntu/imagemagick | <8:6.9.7.4+dfsg-16ubuntu6.15+esm2 | 8:6.9.7.4+dfsg-16ubuntu6.15+esm2 |
=18.04 | ||
All of | ||
ubuntu/imagemagick-6.q16 | <8:6.9.7.4+dfsg-16ubuntu6.15+esm2 | 8:6.9.7.4+dfsg-16ubuntu6.15+esm2 |
=18.04 | ||
All of | ||
ubuntu/imagemagick-6.q16hdri | <8:6.9.7.4+dfsg-16ubuntu6.15+esm2 | 8:6.9.7.4+dfsg-16ubuntu6.15+esm2 |
=18.04 | ||
All of | ||
ubuntu/imagemagick | <8:6.8.9.9-7ubuntu5.16+esm9 | 8:6.8.9.9-7ubuntu5.16+esm9 |
=16.04 | ||
All of | ||
ubuntu/imagemagick-6.q16 | <8:6.8.9.9-7ubuntu5.16+esm9 | 8:6.8.9.9-7ubuntu5.16+esm9 |
=16.04 | ||
All of | ||
ubuntu/imagemagick | <8:6.7.7.10-6ubuntu3.13+esm6 | 8:6.7.7.10-6ubuntu3.13+esm6 |
=14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this ImageMagick vulnerability is CVE-2022-48541.
The ImageMagick package versions 8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1, 8:6.9.7.4+dfsg-16ubuntu6.15+esm2, 8:6.8.9.9-7ubuntu5.16+esm9, and 8:6.7.7.10-6ubuntu3.13+esm6 are affected.
The severity of the ImageMagick vulnerability is not specified.
To fix the ImageMagick vulnerability, update the affected software to the specified versions: 8:6.9.10.23+dfsg-2.1ubuntu11.9+esm1, 8:6.9.7.4+dfsg-16ubuntu6.15+esm2, 8:6.8.9.9-7ubuntu5.16+esm9, or 8:6.7.7.10-6ubuntu3.13+esm6.
You can find more information about the ImageMagick vulnerability in the following references: [link1](https://ubuntu.com/security/CVE-2022-48541), [link2](https://ubuntu.com/security/notices/USN-6393-1).