Unknown · Imagemagick · CVE-2023-1906
**Name of the Vulnerable Software and Affected Versions**
ImageMagick (affected versions not specified)
**Description**
A heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted files to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.