CVE-2025-43965

Public on 2025-04-23
Modified on 2025-04-30
Description
In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.
Severity
Low severity
Low
CVSS v3 Base Score
2.9
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
HAQM Linux 1 ImageMagick No Fix Planned
HAQM Linux 2 - Core ImageMagick 2025-05-21 ALAS2-2025-2857 Fixed
HAQM Linux 2023 ImageMagick 2025-05-21 ALAS2023-2025-972 Fixed

CVSS Scores

Score Type Score Vector
HAQM Linux CVSSv3 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
NVD CVSSv3 2.9 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L