


Perceptive Security
SOC/SIEM Consultancy

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer overflow in …
Published:
9 maart 2026 om 23:00:00
Alert date:
10 maart 2026 om 08:02:35
Source:
nvd.nist.gov
Web Technologies, Enterprise Applications
ImageMagick, a free and open-source image editing software, contains an integer overflow vulnerability in its DIB coder component. The vulnerability affects versions prior to 7.1.2-16 and 6.9.13-41, potentially leading to out-of-bounds read or write operations. This memory corruption issue could allow attackers to cause denial of service or potentially execute arbitrary code. The vulnerability has been patched in ImageMagick versions 7.1.2-16 and 6.9.13-41. Users should update to the fixed versions to mitigate this security risk.
Technical details
Mitigation steps:
Affected products:
ImageMagick
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-28693
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-hffp-q43q-qq76
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
