Security Advisory

CVE-2021-20224

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-25 00:00:00
Last updated 2024-08-03 17:30:07
Assigner redhat
State PUBLISHED

Description

An integer overflow issue was discovered in ImageMagicks ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the unsigned char. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.