UBUNTU-CVE-2026-56366
Dashboard / Vulnerabilities / UBUNTU-CVE-2026-56366
UBUNTU-CVE-2026-56366
Summary:
Details: ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META reader when processing APP1JPEG input paths. Attackers can trigger this memory leak by providing specially crafted APP1JPEG image files, causing denial of service through resource exhaustion.
References: https://ubuntu.com/security/CVE-2026-56366, https://www.cve.org/CVERecord?id=CVE-2026-56366, https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-9r56-3gjq-hqf7, https://www.vulncheck.com/advisories/imagemagick-memory-leak-in-meta-reader-app1jpeg-error-path, https://ubuntu.com/security/notices/USN-8739-1
Affected packages
Package
Name: imagemagick
Purl: pkg:deb/ubuntu/imagemagick?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
