CVE-2022-1114
29.04.2022, 16:15
A heap-use-after-free flaw was found in ImageMagick's RelinquishDCMInfo() function of dcm.c file. This vulnerability is triggered when an attacker passes a specially crafted DICOM image file to ImageMagick for conversion, potentially leading to information disclosure and a denial of service.Enginsight
Vendor | Product | Version |
---|---|---|
imagemagick | imagemagick | 6.0 ≤ 𝑥 < 6.9.12-43 |
imagemagick | imagemagick | 7.0.0-0 ≤ 𝑥 < 7.1.0-28 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
imagemagick |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
imagemagick |
|
Common Weakness Enumeration