MEDIUM 5.5 NuGet
ImageMagick has a heap-use-after-free via XMP profile could result in a crash when printing the values.
GHSA-r83h-crwp-3vm7 · CVE-2026-40311
Published · Modified
Description
An heap use after free when reading an invalid XMP profile could result in a crash due to an heap use after free when printing the values.
References
- WEB https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-r83h-crwp-3vm7
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2026-40311
- WEB https://github.com/ImageMagick/ImageMagick/commit/5facfecf1abb3fed46a08f614dcc43d1e548e20d
- PACKAGE https://github.com/ImageMagick/ImageMagick
- WEB https://github.com/ImageMagick/ImageMagick/releases/tag/7.1.2-19
- WEB https://github.com/dlemstra/Magick.NET/releases/tag/14.12.0
Ready to move
Start Securing
Free, no credit card | First findings in minutes