lowCVSS 3.3Vulnerability

GHSA-rvhp-75f6-9jqh

Matrix bases operations like `-canny` are missing a check for allowed memory allocation that could result allocating more memory than allowed.

Properties

ghsa_id
GHSA-rvhp-75f6-9jqh
summary
ImageMagick: Policy Bypass possible with matrix-backed operations
severity
low
cvss_score
3.3
cve_id
GHSA-rvhp-75f6-9jqh
cvss_vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
is_ghsa_only
true
ghsa_published
2026-07-24T14:08:14Z
source_url
https://github.com/advisories/GHSA-rvhp-75f6-9jqh
ghsa_updated
2026-07-24T14:08:17Z

Related Entities (38)

VULNERABLE_TO (17)

[Software]nuget/Magick.NET-Q16-HDRI-arm64
[Software]nuget/Magick.NET-Q8-x64
[Software]nuget/Magick.NET-Q8-arm64
[Software]nuget/Magick.NET-Q8-x86
[Software]nuget/Magick.NET-Q16-arm64
[Software]nuget/Magick.NET-Q16-AnyCPU
[Software]nuget/Magick.NET-Q16-HDRI-AnyCPU
[Software]nuget/Magick.NET-Q16-HDRI-x86
[Software]nuget/Magick.NET-Q16-x86
[Software]nuget/Magick.NET-Q16-HDRI-OpenMP-arm64
[Software]nuget/Magick.NET-Q8-OpenMP-arm64
[Software]nuget/Magick.NET-Q16-x64
[Software]nuget/Magick.NET-Q16-OpenMP-arm64
[Software]nuget/Magick.NET-Q16-HDRI-x64
[Software]nuget/Magick.NET-Q16-OpenMP-x64
[Software]nuget/Magick.NET-Q8-OpenMP-x64
[Software]nuget/Magick.NET-Q8-AnyCPU

AFFECTS (17)

[Software]nuget/Magick.NET-Q8-x64
[Software]nuget/Magick.NET-Q16-HDRI-arm64
[Software]nuget/Magick.NET-Q8-arm64
[Software]nuget/Magick.NET-Q8-x86
[Software]nuget/Magick.NET-Q16-arm64
[Software]nuget/Magick.NET-Q16-HDRI-x86
[Software]nuget/Magick.NET-Q16-AnyCPU
[Software]nuget/Magick.NET-Q16-x64
[Software]nuget/Magick.NET-Q8-OpenMP-x64
[Software]nuget/Magick.NET-Q16-x86
[Software]nuget/Magick.NET-Q16-HDRI-AnyCPU
[Software]nuget/Magick.NET-Q8-AnyCPU
[Software]nuget/Magick.NET-Q16-OpenMP-x64
[Software]nuget/Magick.NET-Q16-HDRI-OpenMP-arm64
[Software]nuget/Magick.NET-Q8-OpenMP-arm64
[Software]nuget/Magick.NET-Q16-HDRI-x64
[Software]nuget/Magick.NET-Q16-OpenMP-arm64

REPORTED_BY (1)

[Source]GitHub Advisory Database

HAS_WEAKNESS (3)

[Weakness]Uncontrolled Resource Consumption
[Weakness]Improper Access Control
[Weakness]Allocation of Resources Without Limits or Throttling

Explore deeper with Ninja Signal's threat intelligence graph