Description
An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3357-1 | imagemagick security update |
EUVD |
EUVD-2021-7664 | An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash. |
Ubuntu USN |
USN-5736-1 | ImageMagick vulnerabilities |
Ubuntu USN |
USN-5736-2 | ImageMagick vulnerabilities |
Ubuntu USN |
USN-6200-1 | ImageMagick vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T17:30:07.484Z
Reserved: 2020-12-17T00:00:00.000Z
Link: CVE-2021-20224
No data.
Status : Modified
Published: 2022-08-25T20:15:08.873
Modified: 2024-11-21T05:46:09.763
Link: CVE-2021-20224
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN