Launch Week Day 1: Announcing Security Design Review
MEDIUM 4.4 NuGet

ImageMagick has Heap Buffer Over-Read in BilateralBlurImage

GHSA-cqw9-w2m7-r2m2 · CVE-2026-30935

Published · Modified

Description

BilateralBlurImage contains a heap buffer over-read caused by an incorrect conversion. When processing a crafted image with the -bilateral-blur operation an out of bounds read can occur.

=================================================================
==676172==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x50a0000079c0 at pc 0x57b483c722f7 bp 0x7fffc0acd380 sp 0x7fffc0acd370
READ of size 4 at 0x50a0000079c0 thread T0

Ready to move

Start Securing

Free, no credit card | First findings in minutes