<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 01:18:46 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-02231</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-02231</link>
      <description>bdu:2023-02231</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-02231</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</link>
      <description>certfr-2025-avi-0969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</guid>
    </item>
    <item>
      <title>EUVD-2026-214396</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-214396</link>
      <description>EUVD-2026-214396</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-214396</guid>
    </item>
    <item>
      <title>fkie_cve-2023-1906</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-1906</link>
      <description>&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-1906</guid>
    </item>
    <item>
      <title>GHSA-vpgp-gjqv-364p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vpgp-gjqv-364p</link>
      <description>&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vpgp-gjqv-364p</guid>
    </item>
    <item>
      <title>gsd-2023-1906</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-1906</link>
      <description>gsd-2023-1906</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-1906</guid>
    </item>
    <item>
      <title>OESA-2023-1259 — ImageMagick security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1259</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: ImageMagick, openEuler:20.03-LTS-SP3: ImageMagick, openEuler:22.03-LTS: ImageMagick, openEuler:22.03-LTS-SP1: ImageMagick&lt;/p&gt;
&lt;p&gt;Use ImageMagick to create, edit, compose, or convert bitmap images. It can read and write images in a variety of formats (over 200) including PNG, JPEG, GIF, HEIC, TIFF, DPX, EXR, WebP, Postscript, PDF, and SVG. Use ImageMagick to resize, flip, mirror, rotate, distort, shear and transform images, adjust image colors, apply various special effects, or draw text, lines, polygons, ellipses and Bézier curves.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;amp;quot;/tmp,&amp;amp;quot; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.(CVE-2023-1289)&#13;
&#13;
A heap-based buffer overflow issue was discovered in ImageMagick&amp;amp;apos;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.(CVE-2023-1906)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: ImageMagick, openEuler:20.03-LTS-SP3: ImageMagick, openEuler:22.03-LTS: ImageMagick, openEuler:22.03-LTS-SP1: ImageMagick&lt;/p&gt;
&lt;p&gt;Use ImageMagick to create, edit, compose, or convert bitmap images. It can read and write images in a variety of formats (over 200) including PNG, JPEG, GIF, HEIC, TIFF, DPX, EXR, WebP, Postscript, PDF, and SVG. Use ImageMagick to resize, flip, mirror, rotate, distort, shear and transform images, adjust image colors, apply various special effects, or draw text, lines, polygons, ellipses and Bézier curves.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in &amp;amp;quot;/tmp,&amp;amp;quot; resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.(CVE-2023-1289)&#13;
&#13;
A heap-based buffer overflow issue was discovered in ImageMagick&amp;amp;apos;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.(CVE-2023-1906)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1259</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12858-1 — ImageMagick-7.1.1.6-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12858-1</link>
      <description>&lt;p&gt;ImageMagick-7.1.1.6-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ImageMagick-7.1.1.6-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12858-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-1906</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1906</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: imagemagick, Ubuntu:24.04:LTS: imagemagick&lt;/p&gt;
&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: imagemagick, Ubuntu:24.04:LTS: imagemagick&lt;/p&gt;
&lt;p&gt;A heap-based buffer overflow issue was discovered in ImageMagick&amp;#39;s ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-1906</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0887 — ImageMagick: Schwachstelle ermöglicht Codeausführung</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0887</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in ImageMagick ausnutzen, um beliebigen Programmcode auszuführen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in ImageMagick ausnutzen, um beliebigen Programmcode auszuführen oder einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0887</guid>
    </item>
  </channel>
</rss>
