CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

GHSA-rvhp-75f6-9jqh: ImageMagick: Policy Bypass possible with matrix-backed operations

lowCVSS 3.3
Matrix bases operations like -canny are missing a check for allowed memory allocation that could result allocating more memory than allowed.

Details

Source
GitHub Security Advisories (INTL · database · site)
Severity
low — CVSS 3.3
Published
2026-07-24
Last updated
2026-07-24
Exploitation
Not in CISA KEV at last sync

Original advisory: https://github.com/advisories/GHSA-rvhp-75f6-9jqh

More from GitHub Security Advisories