ImageMagick 7.0.8-34 has a “use of uninitialized value” vulnerability in the SyncImageSettings function in MagickCore/image.c. This is related to AcquireImage in magick/image.c.
CPE | Name | Operator | Version |
---|---|---|---|
ubuntu_linux | eq | 16.04 | |
ubuntu_linux | eq | 18.04 | |
ubuntu_linux | eq | 19.04 | |
ubuntu_linux | eq | 19.10 | |
debian_linux | eq | 9.0 | |
debian_linux | eq | 10.0 | |
imagemagick | eq | 7.0.8-34 | |
leap | eq | 15.0 | |
leap | eq | 15.1 |