
Cloud Vulnerability DB
A community-led vulnerabilities database
A division by zero vulnerability (CVE-2021-20311) was discovered in ImageMagick versions before 7.0.11. The flaw exists in the sRGBTransformImage() function within the MagickCore/colorspace.c file (NVD, Red Hat).
The vulnerability is caused by a division by zero condition in the sRGBTransformImage() function located in MagickCore/colorspace.c. This issue can be triggered when processing specially crafted image files, potentially leading to undefined behavior (Red Hat Bugzilla).
When exploited, this vulnerability can trigger undefined behavior in the application, potentially leading to application crashes or denial of service conditions (NVD).
The vulnerability can be triggered by processing a specially crafted image file. No known exploits were reported in the wild at the time of discovery (ManageEngine).
Users should upgrade to ImageMagick version 7.0.11 or later which contains the fix for this vulnerability. The issue was addressed in an upstream patch (Red Hat Bugzilla).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."