Out-of-bounds read in ImageMagick - CVE-2020-25674
Published: March 21, 2022
Vulnerability details
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the WriteOnePNGImage() from coders/png.c. A remote attacker can create a specially crafted PNG file, pass it to the affected application, trigger an out-of-bounds read error and read contents of memory on the system.
Affected software
Ubuntu
libimage-magick-perl (Ubuntu package)
imagemagick-common (Ubuntu package)
libmagickcore-6.q16-dev (Ubuntu package)
libmagickcore-dev (Ubuntu package)
imagemagick (Ubuntu package)
libimage-magick-q16-perl (Ubuntu package)
libmagickcore-6.q16-2-extra (Ubuntu package)
imagemagick-6.q16 (Ubuntu package)
libmagickcore-6-headers (Ubuntu package)
libmagick++-6.q16-5v5 (Ubuntu package)
perlmagick (Ubuntu package)
libmagickcore-6-arch-config (Ubuntu package)
libmagick++-6.q16-dev (Ubuntu package)
libmagickwand-6.q16-dev (Ubuntu package)
libmagickcore-6.q16-2 (Ubuntu package)
libmagickwand-6.q16-2 (Ubuntu package)
How to mitigate CVE-2020-25674
libimage-magick-perl (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
imagemagick-common (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-6.q16-dev (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-dev (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
imagemagick (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libimage-magick-q16-perl (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-6.q16-2-extra (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
imagemagick-6.q16 (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-6-headers (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagick++-6.q16-5v5 (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
perlmagick (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-6-arch-config (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagick++-6.q16-dev (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickwand-6.q16-dev (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickcore-6.q16-2 (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2
libmagickwand-6.q16-2 (Ubuntu package) - update to 8:6.8.9.97ubuntu5.16+esm2