A vulnerability was found in ImageMagick. This security flaw causes a shell command injection vulnerability via video:vsync or video:pixel-format options in VIDEO encoding/decoding.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
02 Dec 2024, 14:34
Type | Values Removed | Values Added |
---|---|---|
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4UFQJCYJ23HWHNDOVKBHZQ7HCXXL6MM3/ - Mailing List, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V2ZUHZXQ2C3JZYKPW4XHCMVVL467MA2V/ - Mailing List, Third Party Advisory |
21 Nov 2024, 08:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://access.redhat.com/security/cve/CVE-2023-34153 - Third Party Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=2210660 - Issue Tracking | |
References | () https://github.com/ImageMagick/ImageMagick/issues/6338 - Exploit, Issue Tracking, Patch, Vendor Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4UFQJCYJ23HWHNDOVKBHZQ7HCXXL6MM3/ - | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/V2ZUHZXQ2C3JZYKPW4XHCMVVL467MA2V/ - |
Information
Published : 2023-05-30 22:15
Updated : 2025-01-10 21:15
NVD link : CVE-2023-34153
Mitre link : CVE-2023-34153
CVE.ORG link : CVE-2023-34153
JSON object : View
Products Affected
imagemagick
- imagemagick
fedoraproject
- fedora
- extra_packages_for_enterprise_linux
redhat
- enterprise_linux
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')