| Type | URI |
|---|---|
| Third Party Advisory | https://insert-script.blogspot.com/2020/11/imagemagick-shell-injection-via-pdf.html |
| Exploit | https://github.com/ImageMagick/ImageMagick/discussions/2851 |
| Mailing List | https://lists.debian.org/debian-lts-announce/2021/01/msg00010.html |
| Third Party Advisory | https://security.gentoo.org/glsa/202101-36 |
| CPE URI | Source package | Min version | Max version |
|---|---|---|---|
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:* |
imagemagick | >= 6.9.8-1 | < 6.9.11-40 |
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:* |
imagemagick | >= 7.0.5-3 | < 7.0.10-40 |
| Source package | Branch | Version | Maintainer | Status |
|---|---|---|---|---|
| imagemagick6 | edge-community | 6.9.11.42-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.57-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.35-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.31-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.18-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.8-r0 | None | fixed |
| imagemagick | edge-community | 7.0.10.0-r0 | None | fixed |
| imagemagick | edge-community | 7.0.9.7-r0 | None | fixed |
| imagemagick | edge-community | 7.0.8.62-r0 | None | fixed |
| imagemagick | edge-community | 7.0.8.56-r0 | None | fixed |
| imagemagick | edge-community | 7.0.8.53-r0 | None | fixed |
| imagemagick | edge-community | 7.0.8.44-r0 | None | fixed |
| imagemagick | edge-community | 7.0.8.38-r0 | None | fixed |
| imagemagick | 3.22-community | 7.0.10.57-r0 | None | fixed |
| imagemagick | 3.22-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.22-community | 7.0.10.35-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.10.31-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.10.18-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.10.8-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.10.0-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.9.7-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.8.62-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.8.56-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.8.53-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.8.44-r0 | None | possibly vulnerable |
| imagemagick | 3.22-community | 7.0.8.38-r0 | None | possibly vulnerable |
| imagemagick | 3.21-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.20-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.19-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.18-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.17-community | 7.0.10.42-r0 | None | fixed |
| imagemagick | 3.10-main | 7.0.8.68-r0 | Natanael Copa <ncopa@alpinelinux.org> | possibly vulnerable |