CVE-2022-1114
29.04.2022, 16:15
A heap-use-after-free flaw was found in ImageMagick's RelinquishDCMInfo() function of dcm.c file. This vulnerability is triggered when an attacker passes a specially crafted DICOM image file to ImageMagick for conversion, potentially leading to information disclosure and a denial of service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| imagemagick | imagemagick | 6.0 ≤ 𝑥 < 6.9.12-43 |
| imagemagick | imagemagick | 7.0.0-0 ≤ 𝑥 < 7.1.0-28 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| imagemagick |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| imagemagick |
|
Common Weakness Enumeration