CVE-2026-56369
EUVD-2026-4044930.06.2026, 23:17
ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| imagemagick | imagemagick | 𝑥 < 6.9.13-47 |
| imagemagick | imagemagick | 7.0.0-0 ≤ 𝑥 < 7.1.2-22 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration