VDB
BDU%3A2022-06962
BDU%3A2022-06962
PUBLISHED
CVSS 4.900000095367432 MEDIUM
Уязвимость функции ExportIndexQuantum() графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код
Risk Scores
CVSS 2.0
4.900000095367432
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Novell Inc., ImageMagick Studio LLC, ООО «Ред Софт», ООО «РусБИТех-Астра», АО «ИВК» | Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, SUSE Linux Enterprise Workstation Extension, Suse Linux Enterprise Desktop, SUSE Linux Enterprise Module for Desktop Applications, OpenSUSE Leap, ImageMagick, РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise High Performance Computing, SUSE Manager Proxy, SUSE Manager Server, SUSE Linux Enterprise Module for Development Tools, Альт 8 СП (запись в едином реестре российских программ №4305), SUSE Manager Retail Branch Server, SUSE Linux Enterprise Storage, Astra Linux Common Edition (запись в едином реестре российских программ №4433) |
Timeline
- Nov 23, 2022 CVE Published
- Jan 20, 2026 CVE Updated
References
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-imagemagick-cve-2021-20224-cve-2022-28463/ url
- https://nvd.nist.gov/vuln/detail/CVE-2021-20224 url
- https://github.com/ImageMagick/ImageMagick/commit/5af1dffa4b6ab984b5f13d1e91c95760d75f12a6 url
- https://github.com/ImageMagick/ImageMagick/pull/3083 url
- https://github.com/ImageMagick/ImageMagick6/commit/553054c1cb1e4e05ec86237afef76a32cd7c464d url
- https://www.suse.com/security/cve/CVE-2021-20224.html url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2023-0426SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2023-0727SE47 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20251225SE16 url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory