cbcvebase.
CVE-2020-25666
published 2020-12-08

CVE-2020-25666: There are 4 places in HistogramCompare() in MagickCore/histogram.c where an integer overflow is possible during simple math calculations. This occurs in the…

PriorityP410low3.3CVSS 3.1
AVLACLPRNUIRSUCNINAL
EPSS
1.16%
64.0th percentile
There are 4 places in HistogramCompare() in MagickCore/histogram.c where an integer overflow is possible during simple math calculations. This occurs in the rgb values and `count` value for a color. The patch uses casts to `ssize_t` type for these calculations, instead of `int`. This flaw could impact application reliability in the event that ImageMagick processes a crafted input file. This flaw affects ImageMagick versions prior to 7.0.9-0.

Affected

9 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianimagemagick< imagemagick 8:6.9.11.24+dfsg-1 (bookworm)imagemagick 8:6.9.11.24+dfsg-1 (bookworm)
imagemagickimagemagick< 6.9.10-696.9.10-69
imagemagickimagemagick
imagemagickimagemagick>= 0 < 8:6.9.11.24+dfsg-18:6.9.11.24+dfsg-1
imagemagickimagemagick>= 0 < 8:6.9.11.24+dfsg-18:6.9.11.24+dfsg-1
imagemagickimagemagick>= 0 < 8:6.9.11.24+dfsg-18:6.9.11.24+dfsg-1
imagemagickimagemagick>= 0 < 8:6.9.11.24+dfsg-18:6.9.11.24+dfsg-1
imagemagickimagemagick>= 7.0.0-0 < 7.0.9-07.0.9-0

CVSS provenance

nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.