CVE-2025-43965
LOWImageMagick <7.1.1-44 - Info Disclosure
Title source: llmDescription
In MIFF image processing in ImageMagick before 7.1.1-44, image depth is mishandled after SetQuantumFormat is used.
Scores
CVSS v3
2.9
EPSS
0.0023
EPSS Percentile
45.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Classification
CWE
CWE-131
Status
published
Affected Products (2)
imagemagick/imagemagick
< 7.1.1-44
debian/debian_linux
Timeline
Published
Apr 23, 2025
Tracked Since
Feb 18, 2026