ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excessive resource use. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4609-1 | imagemagick security update |
Debian DSA |
DSA-6298-1 | imagemagick security update |
Debian DSA |
DSA-6310-1 | imagemagick security update |
Github GHSA |
GHSA-g5mf-wqq5-vwg6 | ImageMagick: Policy Bypass in MNG coder could |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 10 Jun 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Imagemagick
Imagemagick imagemagick |
|
| Vendors & Products |
Imagemagick
Imagemagick imagemagick |
Wed, 10 Jun 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excessive resource use. This issue has been patched in versions 6.9.13-47 and 7.1.2-22. | |
| Title | ImageMagick: Policy Bypass in MNG coder could | |
| Weaknesses | CWE-400 CWE-407 CWE-674 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-06-10T21:30:51.855Z
Reserved: 2026-05-12T21:59:25.665Z
Link: CVE-2026-45664
No data.
Status : Received
Published: 2026-06-10T22:16:58.910
Modified: 2026-06-10T22:16:58.910
Link: CVE-2026-45664
No data.
OpenCVE Enrichment
Updated: 2026-06-10T22:30:22Z
Debian DLA
Debian DSA
Github GHSA