6.4 Medium
AI Score
Confidence
Low
0.003 Low
EPSS
Percentile
65.6%
ImageMagick 7.0.8-34 has a “use of uninitialized value” vulnerability in the SyncImageSettings function in MagickCore/image.c. This is related to AcquireImage in magick/image.c.
lists.opensuse.org/opensuse-security-announce/2019-08/msg00069.html
www.securityfocus.com/bid/108913
github.com/ImageMagick/ImageMagick/issues/1522
lists.debian.org/debian-lts-announce/2020/08/msg00030.html
usn.ubuntu.com/4192-1/
www.debian.org/security/2020/dsa-4712