Package
imagemagick-6
Component
imagemagick-6
Latest update
6.5
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Justification
Impact
This CVE only affects ImageMagick 7.x. The vulnerable BilateralBlurImage method and AcquireBilateralTLS function do not exist in ImageMagick 6.x codebase. The NVD description states versions prior to 7.1.2-13 and the fix commit (3e0330721020) is in the ImageMagick 7.x repository only. No corresponding code or fix exists in ImageMagick6. Scanner incorrectly applies this v7-specific CVE to v6 due to imprecise CPE matching.
Status