PT-2026-32539 · Unknown · Imagemagick

Jakelamberson

·

Published

2026-04-13

·

Updated

2026-04-24

·

CVE-2026-40183

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 7.1.2-19
Description ImageMagick is free and open-source software used for editing and manipulating digital images. The JXL encoder has a heap write overflow when a user specifies that the image should be encoded as 16 bit floats.
Recommendations Update to version 7.1.2-19.

Fix

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-40183
GHSA-JVGR-9PH5-M8V4
OESA-2026-1916
OESA-2026-1917
OESA-2026-1918
OESA-2026-1919
OESA-2026-1921
OPENSUSE-SU-2026:10586-1
OPENSUSE-SU-2026:20606-1
SUSE-SU-2026:1597-1
SUSE-SU-2026:1598-1

Affected Products

Imagemagick