CVE-2020-27560

CWE-36912 documents8 sources
Severity
3.3LOW
EPSS
0.1%
top 67.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 22
Latest updateOct 15

Description

ImageMagick 7.0.10-34 allows Division by Zero in OptimizeLayerFrames in MagickCore/layer.c, which may cause a denial of service.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:LExploitability: 1.8 | Impact: 1.4

Affected Packages3 packages

Debianimagemagick< 8:6.9.11.57+dfsg-1+3
NVDopensuse/leap15.2

Also affects: Debian Linux 9.0

Patches

🔴Vulnerability Details

4
GHSA
GHSA-wrf5-2xrg-356w: ImageMagick 72022-05-24
OSV
imagemagick vulnerabilities2020-12-15
OSV
CVE-2020-27560: ImageMagick 72020-10-22
CVEList
CVE-2020-27560: ImageMagick 72020-10-22

📋Vendor Advisories

4
Ubuntu
ImageMagick vulnerabilities2024-10-15
Ubuntu
ImageMagick vulnerabilities2020-12-15
Red Hat
ImageMagick: division by zero in OptimizeLayerFrames function in MagickCore/layer.c2020-10-19
Debian
CVE-2020-27560: imagemagick - ImageMagick 7.0.10-34 allows Division by Zero in OptimizeLayerFrames in MagickCo...2020

💬Community

3
Bugzilla
CVE-2020-27560 ImageMagick: division by zero in OptimizeLayerFrames function in MagickCore/layer.c2020-10-22
Bugzilla
CVE-2020-27560 ImageMagick: division by zero in OptimizeLayerFrames function in MagickCore/layer.c [epel-8]2020-10-22
Bugzilla
CVE-2020-27560 ImageMagick: division by zero in OptimizeLayerFrames function in MagickCore/layer.c [fedora-all]2020-10-22
CVE-2020-27560 (LOW CVSS 3.3) | ImageMagick 7.0.10-34 allows Divisi | cvebase.io