Known vulnerabilities in ImageMagick (Red Hat package)
Vendor:
Red Hat Inc.
Software:
ImageMagick (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:imagemagick_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
11
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.9.10.68-16.el7_9
6.9.10.68-15.el7_9
6.9.10.68-13.el7_9
6.9.10.68-10.el7_9
6.9.10.68-9.el7_9
6.9.10.68-8.el7_9
6.0.7.1-20.el4_8.1
6.2.8.0-4.el5_5.2
6.0.7.1-17.el4_6.1
6.2.8.0-4.el5_1.1
6.9.10.68-7.el7_9
6.9.10.68-5.el7_9
6.9.10.68-3.el7
6.2.8.0-12.el5
6.2.8.0-15.el5_8
6.7.8.9-13.el7_2
6.7.8.9-15.el7_2
6.7.2.7-6.el6
6.5.4.7-5.el6
6.7.2.7-5.el6_8
6.7.2.7-4.el6_7
6.7.2.7-2.el6
6.5.4.7-7.el6_5
6.5.4.7-6.el6_2
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU124052 - Heap-based Buffer Overflow CVE-2026-32636 |
CWE-122 | Medium | 6.9.10.68-16.el7_9 | 17.03.2026 |
SB2026031710 SB2026032772 SB2026032773 and 12 more |
||
| #VU123901 - Integer overflow CVE-2026-28693 |
CWE-190 | High | 6.9.10.68-15.el7_9 | 11.03.2026 |
SB2026031159 SB20260406127 SB20260415161 and 13 more |
||
| #VU123899 - Access of Uninitialized Pointer CVE-2026-28691 |
CWE-824 | Medium | 6.9.10.68-15.el7_9 | 11.03.2026 |
SB2026031159 SB20260320119 SB20260406127 and 13 more |
||
| #VU123257 - Allocation of Resources Without Limits or Throttling CVE-2026-25985 |
CWE-770 | Medium | 6.9.10.68-13.el7_9 | 25.02.2026 |
SB2026022540 SB2026030639 SB2026030640 and 9 more |
||
| #VU123226 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2026-25965 |
CWE-22 | Medium | 6.9.10.68-13.el7_9 | 25.02.2026 |
SB2026022540 SB2026030639 SB2026030640 and 11 more |
||
| #VU121674 - Heap-based Buffer Overflow CVE-2026-23876 |
CWE-122 | High | 6.9.10.68-10.el7_9 | 20.01.2026 |
SB2026012004 SB2026012343 SB2026012344 and 13 more |
||
| #VU117368 - Integer overflow CVE-2025-62171 |
CWE-190 | Low | 6.9.10.68-10.el7_9 | 20.10.2025 |
SB2025102013 SB20251024104 SB20251024105 and 12 more |
||
| #VU114417 - Integer overflow CVE-2025-57803 |
CWE-190 | Medium | 6.9.10.68-9.el7_9 | 26.08.2025 |
SB2025082604 SB2025090583 SB2025090584 and 17 more |
||
| #VU114264 - Integer overflow CVE-2025-55154 |
CWE-190 | High | 6.9.10.68-8.el7_9 | 20.08.2025 |
SB20250820103 SB2025090583 SB2025090584 and 19 more |
||
| #VU82117 - Divide By Zero CVE-2021-40211 |
CWE-369 | Medium | 6.9.10.68-7.el7_9 | 17.10.2023 |
SB2023101770 SB20231017123 SB20231018146 and 2 more |
||
| #VU48940 - XML Injection CVE-2020-29599 |
CWE-91 | High | 6.9.10.68-5.el7_9 | 13.12.2020 |
SB2020121303 SB2020121304 SB2020121605 and 6 more |