Launch Week Day 1: Announcing Security Design Review
MEDIUM 5.1 NuGet

ImageMagick has an Out-of-bounds Write via InterpretImageFilename

GHSA-8793-7xv6-82cf · CVE-2026-33536

Published · Modified

Description

Due to an incorrect return value on certain platforms a pointer is incremented past the end of a buffer that is on the stack and that could result in an out of bounds write.

=================================================================
==48558==ERROR: AddressSanitizer: stack-buffer-overflow on address 0x00016b9b7490 at pc 0x0001046d48ac bp 0x00016b9b31d0 sp 0x00016b9b31c8
WRITE of size 1 at 0x00016b9b7490 thread T0

Ready to move

Start Securing

Free, no credit card | First findings in minutes