PT-2020-6178 · Imagemagick+7 · Imagemagick+7

Alex Inführ

·

Published

2020-11-21

·

Updated

2023-07-04

·

CVE-2020-29599

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ImageMagick versions 6.9.11-40 and earlier, 7.x versions prior to 7.0.10-40
Description The issue is related to the -authenticate option in ImageMagick, which is used for setting passwords for password-protected PDF files. The user-controlled password is not properly escaped or sanitized, allowing an attacker to inject additional shell commands via coders/pdf.c. This could lead to unauthorized access to confidential data, disruption of data integrity, and denial of service.
Recommendations For ImageMagick versions 6.9.11-40 and earlier: update to version 6.9.11-40 or later. For 7.x versions prior to 7.0.10-40: update to version 7.0.10-40 or later. As a temporary workaround, consider disabling the use of the -authenticate option until a patch is available. Restrict access to the coders/pdf.c module to minimize the risk of exploitation. Avoid using user-controlled passwords with the -authenticate option until the issue is resolved.

Exploit

Fix

Weakness Enumeration

Related Identifiers

ALT-PU-2021-1001
ALT-PU-2021-1440
BDU:2021-03444
CESA-2021_0024
CVE-2020-29599
DLA-2523-1
DLA-3357-1
DLA-3357-2
OESA-2021-1007
OPENSUSE-SU-2021:0136-1
OPENSUSE-SU-2021:0148-1
OPENSUSE-SU-2021_0136-1
OPENSUSE-SU-2021_0148-1
RHSA-2021:0024
RHSA-2021_0024
SUSE-SU-2021:0153-1
SUSE-SU-2021:0156-1
USN-6200-1

Affected Products

Alt Linux
Astra Linux
Centos
Imagemagick
Linuxmint
Red Hat
Suse
Ubuntu