PT-2026-56438 · Unknown+1 · Imagemagick+1

·

CVE-2026-56362

·

Published

2026-02-07

·

Updated

2026-08-25

CVSS v3.1

4.2

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:L
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 7.1.2-15
Description A heap-buffer-overflow read occurs in the GetPixelIndex() function. This issue is caused by OpenPixelCache updating image channel metadata before the pixel cache memory is allocated. An attacker can trigger memory and disk allocation failures, leading to a heap-buffer-overflow read for any writer that calls GetPixelIndex().
Recommendations Update to version 7.1.2-15 or later.

Exploit

Fix

DoS

Heap Based Buffer Overflow

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-12762
CVE-2026-56362
ECHO-EE2B-A590-0121
GHSA-GQ5V-QF8Q-FP77
JLSEC-2026-1043
OPENSUSE-SU-2026:11228-1
OPENSUSE-SU-2026:21391-1
SUSE-SU-2026:22829-1
SUSE-SU-2026:3192-1
SUSE-SU-2026:3193-1
SUSE-SU-2026:3194-1
SUSE-SU-2026:3219-1

Affected Products

Imagemagick
Red Os