Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.5 NuGet

ImageMagick has Heap Buffer Overflow in WaveletDenoiseImage

GHSA-5ggv-92r5-cp4p · CVE-2026-30936

Published · Modified

Description

A crafted image could cause an out of bounds heap write inside the WaveletDenoiseImage method. When processing a crafted image with the -wavelet-denoise operation an out of bounds write can occur.

=================================================================
==661320==ERROR: AddressSanitizer: heap-buffer-overflow on address 0x503000002754 at pc 0x5ff45f82c92a bp 0x7fffb732b400 sp 0x7fffb732b3f0
WRITE of size 4 at 0x503000002754 thread T0

Ready to move

Start Securing

Free, no credit card | First findings in minutes