


Perceptive Security
SOC/SIEM Consultancy

Missing Release of Memory after Effective Lifetime vulnerability in MolotovCherry Android-ImageMagick7.This issue affects Android-ImageMagick7: before 7.1.2-11.
Published:
23 maart 2026 om 23:00:00
Alert date:
24 maart 2026 om 16:16:53
Source:
nvd.nist.gov
Mobile & IoT, Supply Chain & Dependencies
A memory management vulnerability has been identified in MolotovCherry's Android-ImageMagick7 library. The issue involves missing release of memory after its effective lifetime, which can lead to memory leaks and potential system instability. This vulnerability affects all versions of Android-ImageMagick7 prior to version 7.1.2-11. The issue has been addressed in the latest version, and users are advised to update their implementations. A pull request (#191) has been submitted to the project's GitHub repository to address this vulnerability.
Technical details
Mitigation steps:
Affected products:
Android-ImageMagick7
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-33856
https://github.com/MolotovCherry/Android-ImageMagick7/pull/191
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
