Lucene search

K
redhatcveRedhat.comRH:CVE-2020-27764
HistoryNov 24, 2020 - 7:54 p.m.

CVE-2020-27764

2020-11-2419:54:13
redhat.com
access.redhat.com
18
insecure casting
imagemagick
applyevaluateoperator
crafted input file

EPSS

0.001

Percentile

35.1%

In /MagickCore/statistic.c, there are several areas in ApplyEvaluateOperator() where a size_t cast should have been a ssize_t cast, which causes out-of-range values under some circumstances when a crafted input file is processed by ImageMagick.