CVE-2021-20176 PUBLISHED

A divide-by-zero flaw was found in ImageMagick 6.9.11-57 and 7.0.10-57 in gem.c. This flaw allows an attacker who submits a crafted file that is processed by ImageMagick to trigger undefined behavior through a division by zero. The highest threat from this vulnerability is to system availability.

EPSS 0.13% · 32.4th percentile

Risk Scores

EPSS Score
0.13%
32.4th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSimagemagick0, 8:6.9.7.4+dfsg-16ubuntu6.4, 8:6.9.7.4+dfsg-16ubuntu6.3
Ubuntu:20.04:LTSimagemagick8:6.9.10.23+dfsg-2.1ubuntu11.1, 8:6.9.10.23+dfsg-2.1ubuntu11, 8:6.9.10.23+dfsg-2.1ubuntu10
Ubuntu:Pro:14.04:LTSimagemagick8:6.7.7.10-6ubuntu3.13+esm3, 8:6.7.7.10-6ubuntu3.13+esm4, 8:6.7.7.10-6ubuntu3.13+esm5
Ubuntu:Pro:16.04:LTSimagemagick8:6.8.9.9-7ubuntu5.12, 8:6.8.9.9-7ubuntu5.13, 8:6.8.9.9-7ubuntu5.14

Timeline

References

Open in Interactive Console →