CVE-2019-13454
ImageMagick: division by zero in RemoveDuplicateLayers in MagickCore/layer.c
Severity Score
Exploit Likelihood
Affected Versions
9Public Exploits
1Exploited in Wild
-Decision
Descriptions
ImageMagick 7.0.8-54 Q16 allows Division by Zero in RemoveDuplicateLayers in MagickCore/layer.c.
ImageMagick versión 7.0.8-54 Q16, permite la División por Cero en la función RemoveDuplicateLayers en el archivo MagickCore/layer.c.
ImageMagick 7.0.1-0 to 7.0.8-54 Q16 allows Division by Zero in RemoveDuplicateLayers in MagickCore/layer.c.
It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or potentially leak sensitive information. These vulnerabilities included heap and stack-based buffer overflows, memory leaks, and improper handling of uninitialized values.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-07-09 CVE Reserved
- 2019-07-09 CVE Published
- 2025-03-04 CVE Updated
- 2025-03-04 First Exploit
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-369: Divide By Zero