Security Advisory

CVE-2023-1906

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-12 00:00:00
Last updated 2025-02-10 16:36:39
Assigner redhat
State PUBLISHED

Description

A heap-based buffer overflow issue was discovered in ImageMagicks ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.