Bug 2471934 (CVE-2026-42050) - CVE-2026-42050 ImageMagick: ImageMagick: Denial of Service due to an overflow vulnerability in MIFF file processing
Summary: CVE-2026-42050 ImageMagick: ImageMagick: Denial of Service due to an overflow...
Keywords:
Status: NEW
Alias: CVE-2026-42050
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2479581 2479582
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-05-11 21:11 UTC by OSIDB Bzimport
Modified: 2026-05-18 14:48 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-05-11 21:11:54 UTC
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-21 and 6.9.13-46, a malicious MIFF file could trigger an overflow when a user opens it in the display tool and right-clicks a tile to invoke the Load / Update menu item. This vulnerability is fixed in 7.1.2-21 and 6.9.13-46.


Note You need to log in before you can comment on or make changes to this bug.