PT-2020-6178 · Imagemagick+7 · Imagemagick+7
Alex Inführ
·
Published
2020-11-21
·
Updated
2023-07-04
·
CVE-2020-29599
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
ImageMagick versions 6.9.11-40 and earlier, 7.x versions prior to 7.0.10-40
Description
The issue is related to the -authenticate option in ImageMagick, which is used for setting passwords for password-protected PDF files. The user-controlled password is not properly escaped or sanitized, allowing an attacker to inject additional shell commands via coders/pdf.c. This could lead to unauthorized access to confidential data, disruption of data integrity, and denial of service.
Recommendations
For ImageMagick versions 6.9.11-40 and earlier: update to version 6.9.11-40 or later.
For 7.x versions prior to 7.0.10-40: update to version 7.0.10-40 or later.
As a temporary workaround, consider disabling the use of the -authenticate option until a patch is available. Restrict access to the coders/pdf.c module to minimize the risk of exploitation. Avoid using user-controlled passwords with the -authenticate option until the issue is resolved.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Centos
Imagemagick
Linuxmint
Red Hat
Suse
Ubuntu