CVE-2021-3574
Summary
| CVE | CVE-2021-3574 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-08-26 16:15:00 UTC |
| Updated | 2023-11-07 03:38:00 UTC |
| Description | A vulnerability was found in ImageMagick-7.0.11-5, where executing a crafted file with the convert command, ASAN detects memory leaks. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] Fedora 37 Update: ImageMagick-6.9.12.63-1.fc37 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 35 Update: ImageMagick-6.9.12.63-1.fc35 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| AddressSanitizer report LeakSanitizer: detected memory leaks when executing convert command · Issue #3540 · ImageMagick/ImageMagick · GitHub |
MISC |
github.com |
|
| [SECURITY] Fedora 35 Update: ImageMagick-6.9.12.63-1.fc35 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: ImageMagick-6.9.12.62-1.fc36 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| https://github.com/ImageMagick/ImageMagick/issues/3540 · ImageMagick/ImageMagick6@cd7f9fb · GitHub |
MISC |
github.com |
|
| [SECURITY] [DLA 3357-1] imagemagick security update |
MLIST |
lists.debian.org |
|
| https://github.com/ImageMagick/ImageMagick/issues/3540 · ImageMagick/ImageMagick@c6ad94f · GitHub |
MISC |
github.com |
|
| [SECURITY] Fedora 37 Update: ImageMagick-6.9.12.63-1.fc37 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 36 Update: ImageMagick-6.9.12.62-1.fc36 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181625 Debian Security Update for imagemagick (DLA 3357-1)
- 184810 Debian Security Update for imagemagick (CVE-2021-3574)
- 199045 Ubuntu Security Notification for ImageMagick Vulnerabilities (USN-5736-1)
- 283107 Fedora Security Update for ImageMagick (FEDORA-2022-776925f086)
- 283136 Fedora Security Update for ImageMagick (FEDORA-2022-0a0e4cb94a)
- 354413 Amazon Linux Security Advisory for ImageMagick : ALAS2022-2022-215
- 354586 Amazon Linux Security Advisory for ImageMagick : ALAS-2022-215
- 354798 Amazon Linux Security Advisory for ImageMagick : ALAS2-2023-1971
- 354809 Amazon Linux Security Advisory for ImageMagick : ALAS-2023-1696
- 502535 Alpine Linux Security Update for imagemagick
- 753142 SUSE Enterprise Linux Security Update for ImageMagick (SUSE-SU-2022:3552-1)