<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 09:31:47 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-02155</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-02155</link>
      <description>bdu:2023-02155</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-02155</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</link>
      <description>certfr-2025-avi-0969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</guid>
    </item>
    <item>
      <title>EUVD-2026-6656</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-6656</link>
      <description>EUVD-2026-6656</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-6656</guid>
    </item>
    <item>
      <title>fkie_cve-2023-1289</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-1289</link>
      <description>&lt;p&gt;A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;#34;/tmp,&amp;#34; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;#34;/tmp,&amp;#34; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-1289</guid>
    </item>
    <item>
      <title>GHSA-j96m-mjp6-99xr — ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage…</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j96m-mjp6-99xr</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Magick.NET-Q16-AnyCPU, NuGet: Magick.NET-Q16-HDRI-AnyCPU, NuGet: Magick.NET-Q16-HDRI-OpenMP-arm64, NuGet: Magick.NET-Q16-HDRI-arm64, NuGet: Magick.NET-Q16-HDRI-x64, NuGet: Magick.NET-Q16-HDRI-x86, NuGet: Magick.NET-Q16-OpenMP-arm64, NuGet: Magick.NET-Q16-OpenMP-x64, NuGet: Magick.NET-Q16-OpenMP-x86, NuGet: Magick.NET-Q16-arm64 and 9 more&lt;/p&gt;
&lt;p&gt;### Summary
Specially crafted SVG file make segmentation fault and generate trash files in &amp;#34;/tmp&amp;#34;, possible to leverage DoS.&lt;/p&gt;
&lt;p&gt;### Operating system, version and so on&lt;/p&gt;
&lt;p&gt;Linux,  Debian (Buster) LTS core 5.10 / Parrot OS 5.1 (Electro Ara)&lt;/p&gt;
&lt;p&gt;### Tested ImageMagick version&lt;/p&gt;
&lt;p&gt;6.9.11-60, 7.1.0-62&lt;/p&gt;
&lt;p&gt;### Details
A specially created SVG file that loads by itself and make segmentation fault. Remote attackers can take advantage of this vulnerability to cause a denial of service of the generated SVG file.&lt;/p&gt;
&lt;p&gt;It seems that this error affects a lot of websites and causes a generating trash files in ```/tmp``` when uploading this PC file to the server.&lt;/p&gt;
&lt;p&gt;I think it&amp;#39;s better to check the file descriptor coming from itself before executing ```read()```.&lt;/p&gt;
&lt;p&gt;### PoC
1. Generate SVG file:
```&amp;lt;?xml version=&amp;#34;1.0&amp;#34; standalone=&amp;#34;yes&amp;#34;?&amp;gt;
&amp;lt;!DOCTYPE test&amp;gt;
&amp;lt;svg width=&amp;#34;128px&amp;#34; height=&amp;#34;128px&amp;#34; xmlns=&amp;#34;http://www.w3.org/2000/svg&amp;#34; xmlns:xlink=&amp;#34;http://www.w3.org/1999/xlink&amp;#34; version=&amp;#34;1.1&amp;#34;&amp;gt;
&amp;lt;image height=&amp;#34;200&amp;#34; width=&amp;#34;200&amp;#34; xlink:href=&amp;#34;bad.svg&amp;#34; /&amp;gt;
&amp;lt;/svg&amp;gt;
```
2. Run some commands for verification:
```$rm -f /tmp/*
$./magick --version
Version: ImageMagick 7.1.0-62 Q16-HDRI x86_64 74b3683a4:20230211 https://imagemagick.org
Copyright: (C) 1999 ImageMagick Studio LLC
License: https://imagemagick.org/script/license.php
Features: Cipher DPC HDRI OpenMP(4.5) 
Delegates (built-in): bzlib djvu fontconfig freetype jbig jng jpeg lcms lqr lzma openexr png raqm tiff webp x xml zlib
Compiler: gcc (7.5)
$./magick convert -verbose -font OpenSy…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: Magick.NET-Q16-AnyCPU, NuGet: Magick.NET-Q16-HDRI-AnyCPU, NuGet: Magick.NET-Q16-HDRI-OpenMP-arm64, NuGet: Magick.NET-Q16-HDRI-arm64, NuGet: Magick.NET-Q16-HDRI-x64, NuGet: Magick.NET-Q16-HDRI-x86, NuGet: Magick.NET-Q16-OpenMP-arm64, NuGet: Magick.NET-Q16-OpenMP-x64, NuGet: Magick.NET-Q16-OpenMP-x86, NuGet: Magick.NET-Q16-arm64 and 9 more&lt;/p&gt;
&lt;p&gt;### Summary
Specially crafted SVG file make segmentation fault and generate trash files in &amp;#34;/tmp&amp;#34;, possible to leverage DoS.&lt;/p&gt;
&lt;p&gt;### Operating system, version and so on&lt;/p&gt;
&lt;p&gt;Linux,  Debian (Buster) LTS core 5.10 / Parrot OS 5.1 (Electro Ara)&lt;/p&gt;
&lt;p&gt;### Tested ImageMagick version&lt;/p&gt;
&lt;p&gt;6.9.11-60, 7.1.0-62&lt;/p&gt;
&lt;p&gt;### Details
A specially created SVG file that loads by itself and make segmentation fault. Remote attackers can take advantage of this vulnerability to cause a denial of service of the generated SVG file.&lt;/p&gt;
&lt;p&gt;It seems that this error affects a lot of websites and causes a generating trash files in ```/tmp``` when uploading this PC file to the server.&lt;/p&gt;
&lt;p&gt;I think it&amp;#39;s better to check the file descriptor coming from itself before executing ```read()```.&lt;/p&gt;
&lt;p&gt;### PoC
1. Generate SVG file:
```&amp;lt;?xml version=&amp;#34;1.0&amp;#34; standalone=&amp;#34;yes&amp;#34;?&amp;gt;
&amp;lt;!DOCTYPE test&amp;gt;
&amp;lt;svg width=&amp;#34;128px&amp;#34; height=&amp;#34;128px&amp;#34; xmlns=&amp;#34;http://www.w3.org/2000/svg&amp;#34; xmlns:xlink=&amp;#34;http://www.w3.org/1999/xlink&amp;#34; version=&amp;#34;1.1&amp;#34;&amp;gt;
&amp;lt;image height=&amp;#34;200&amp;#34; width=&amp;#34;200&amp;#34; xlink:href=&amp;#34;bad.svg&amp;#34; /&amp;gt;
&amp;lt;/svg&amp;gt;
```
2. Run some commands for verification:
```$rm -f /tmp/*
$./magick --version
Version: ImageMagick 7.1.0-62 Q16-HDRI x86_64 74b3683a4:20230211 https://imagemagick.org
Copyright: (C) 1999 ImageMagick Studio LLC
License: https://imagemagick.org/script/license.php
Features: Cipher DPC HDRI OpenMP(4.5) 
Delegates (built-in): bzlib djvu fontconfig freetype jbig jng jpeg lcms lqr lzma openexr png raqm tiff webp x xml zlib
Compiler: gcc (7.5)
$./magick convert -verbose -font OpenSy…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j96m-mjp6-99xr</guid>
    </item>
    <item>
      <title>gsd-2023-1289</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-1289</link>
      <description>gsd-2023-1289</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-1289</guid>
    </item>
    <item>
      <title>OESA-2023-1259 — ImageMagick security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1259</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: ImageMagick, openEuler:20.03-LTS-SP3: ImageMagick, openEuler:22.03-LTS: ImageMagick, openEuler:22.03-LTS-SP1: ImageMagick&lt;/p&gt;
&lt;p&gt;Use ImageMagick to create, edit, compose, or convert bitmap images. It can read and write images in a variety of formats (over 200) including PNG, JPEG, GIF, HEIC, TIFF, DPX, EXR, WebP, Postscript, PDF, and SVG. Use ImageMagick to resize, flip, mirror, rotate, distort, shear and transform images, adjust image colors, apply various special effects, or draw text, lines, polygons, ellipses and Bézier curves.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;amp;quot;/tmp,&amp;amp;quot; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.(CVE-2023-1289)&#13;
&#13;
A heap-based buffer overflow issue was discovered in ImageMagick&amp;amp;apos;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.(CVE-2023-1906)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: ImageMagick, openEuler:20.03-LTS-SP3: ImageMagick, openEuler:22.03-LTS: ImageMagick, openEuler:22.03-LTS-SP1: ImageMagick&lt;/p&gt;
&lt;p&gt;Use ImageMagick to create, edit, compose, or convert bitmap images. It can read and write images in a variety of formats (over 200) including PNG, JPEG, GIF, HEIC, TIFF, DPX, EXR, WebP, Postscript, PDF, and SVG. Use ImageMagick to resize, flip, mirror, rotate, distort, shear and transform images, adjust image colors, apply various special effects, or draw text, lines, polygons, ellipses and Bézier curves.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;amp;quot;/tmp,&amp;amp;quot; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.(CVE-2023-1289)&#13;
&#13;
A heap-based buffer overflow issue was discovered in ImageMagick&amp;amp;apos;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.(CVE-2023-1906)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1259</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:13263-1 — ImageMagick-7.1.1.17-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:13263-1</link>
      <description>&lt;p&gt;ImageMagick-7.1.1.17-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ImageMagick-7.1.1.17-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:13263-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2023:1734-1 — Security update for ImageMagick</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2023:1734-1</link>
      <description>&lt;p&gt;Security update for ImageMagick&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for ImageMagick&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2023:1734-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-1289</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1289</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: imagemagick, Ubuntu:22.04:LTS: imagemagick, Ubuntu:24.04:LTS: imagemagick&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;#34;/tmp,&amp;#34; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: imagemagick, Ubuntu:22.04:LTS: imagemagick, Ubuntu:24.04:LTS: imagemagick&lt;/p&gt;
&lt;p&gt;A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;#34;/tmp,&amp;#34; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1289</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0615 — ImageMagick: Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0615</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in ImageMagick ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in ImageMagick ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0615</guid>
    </item>
  </channel>
</rss>
