USN-8810-1: ImageMagick vulnerabilities
Ubuntu patched ImageMagick flaws that could cause denial of service or code execution.
Ubuntu Security Notice USN-8810-1 addresses ImageMagick memory-handling flaws affecting Ubuntu 14.04 LTS through 24.04 LTS. CVE-2026-33535 could allow an attacker to cause a denial of service. CVE-2026-33536, discovered by Kamil Frankowicz, could cause a denial of service or arbitrary code execution. The notice does not report observed exploitation.
- CVE-2026-33535 may let an attacker cause a denial of service
- CVE-2026-33536 may allow denial of service or arbitrary code execution
- Fixes cover Ubuntu 14.04 LTS through Ubuntu 24.04 LTS
- The notice does not report that the flaws are being exploited
Vulnerabilities mentionedAll →
- CVE-2026-335355.5<1%ImageMagick is free and open-source software used for editing and manipulating digital imagespublished · imagemagick imagemagick+1 related
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
CVE-2026-33535+1 related CVE | ImageMagick is free and open-source software used for editing and manipulating digital images |
It was discovered that ImageMagick did not correctly handle certain memory operations. An attacker could possibly use this issue to cause a denial of service. This issue affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2026-33535) Kamil Frankowicz discovered that ImageMagick did not correctly handle certain memory operations. An attacker could possibly use this issue to cause a denial of service or execute arbitrary code. This issue affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, Ubuntu 20.04 LTS, Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2026-33536) It was discovered that ImageMagick did not…
This source does not provide full text. Read it at ubuntu.com.