#VU117368 Integer overflow in ImageMagick - CVE-2025-62171
Published: October 20, 2025
ImageMagick
ImageMagick.org
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to an integer overflow in coders/bmp.c caused by an incomplete fox for #VU114417 (CVE-2025-57803). A remote attacker can pass specially crafted image to the application, trigger an integer overflow and perform a denial of service (DoS) attack.
The vulnerability affects only 32-bit systems with certain resource limits.