Vulnerabilities > CVE-2022-2719 - Reachable Assertion vulnerability in multiple products

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

Vulnerable Configurations

Part Description Count
Application
Fedoraproject
1
Application
Imagemagick
1526
OS
Fedoraproject
1

Common Weakness Enumeration (CWE)