PT-2026-64761 · Unknown · Imagemagick

·

CVE-2026-66011

·

Published

2026-07-25

·

Updated

2026-09-02

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 7.1.2-27
Description A memory leak exists in the magick command-line interface. This occurs when invalid options are provided, allowing an attacker to trigger memory exhaustion by repeatedly supplying malformed command-line arguments to consume system resources.
Recommendations Update to version 7.1.2-27 or later.

Exploit

Fix

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-66011
ECHO-F4E4-6B33-9609
GHSA-CVHV-G4RQ-3HMW
JLSEC-2026-1083
OESA-2026-3269
OESA-2026-3270
OESA-2026-3271
OESA-2026-3272
OPENSUSE-SU-2026:11405-1
OPENSUSE-SU-2026:21635-1
SUSE-SU-2026:23312-1
SUSE-SU-2026:3414-1

Affected Products

Imagemagick