Launch Week Day 1: Announcing Security Design Review
MEDIUM 6.8 NuGet

ImageMagick has heap-based buffer overflow in UHDR encoder

GHSA-h95r-c8c7-mrwx · CVE-2026-30931

Published · Modified

Description

A heap-based buffer overflow in the UHDR encoder can happen due to truncation of a value and it would allow an out of bounds write.

================================================================
==2158399==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x521000039500 at pc 0x562a4a42f968 bp 0x7ffcca4ed6c0 sp 0x7ffcca4ed6b0
WRITE of size 1 at 0x521000039500 thread T0

Ready to move

Start Securing

Free, no credit card | First findings in minutes