PT-2026-51513 · Unknown+1 · Imagemagick+1

·

CVE-2026-56376

·

Published

2026-02-25

·

Updated

2026-07-30

CVSS v4.0

6.3

Medium

VectorAV:N/AC:H/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 7.1.2-15 ImageMagick versions prior to 6.9.13-40
Description A heap use-after-free exists in the meta coder. This occurs when memory allocation fails and a single byte is written to a stale pointer. Remote attackers can trigger this condition by processing specially crafted image files, leading to a denial of service. A heap use-after-free is a memory corruption issue where the program continues to use a pointer after the memory it points to has been freed.
Recommendations Update to version 7.1.2-15 or later. Update to version 6.9.13-40 or later.

Exploit

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09995
CVE-2026-56376
ECHO-6170-C952-1E0B
GHSA-2GQ3-WW97-WFJM
JLSEC-2026-1057
OPENSUSE-SU-2026:11127-1
OPENSUSE-SU-2026:21071-1
SUSE-SU-2026:22378-1
SUSE-SU-2026:2877-1
SUSE-SU-2026:3023-1
SUSE-SU-2026:3053-1

Affected Products

Imagemagick
Red Os