CVE-2026-53461HIGHCVSS 7.5

ImageMagick has out-of-bounds write in ICON decoder due to incorrect loop

Published Jun 25, 2026·Updated Jun 25, 2026

Description

An incorrect loop in the ICON decoder can result in an out of bounds heap write resulting in a crash.

Affected Packages (17)

Magick.NET-Q8-x86NUGET
Fixed in 14.14.0
Magick.NET-Q8-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q8-OpenMP-x64NUGET
Fixed in 14.14.0
Magick.NET-Q8-OpenMP-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q8-AnyCPUNUGET
Fixed in 14.14.0
Magick.NET-Q16-x86NUGET
Fixed in 14.14.0
Magick.NET-Q16-x64NUGET
Fixed in 14.14.0
Magick.NET-Q16-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q16-OpenMP-x64NUGET
Fixed in 14.14.0
Magick.NET-Q16-OpenMP-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q16-HDRI-x86NUGET
Fixed in 14.14.0
Magick.NET-Q16-HDRI-x64NUGET
Fixed in 14.14.0
Magick.NET-Q16-HDRI-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q16-HDRI-OpenMP-arm64NUGET
Fixed in 14.14.0
Magick.NET-Q16-HDRI-AnyCPUNUGET
Fixed in 14.14.0
Magick.NET-Q16-AnyCPUNUGET
Fixed in 14.14.0
Magick.NET-Q8-x64NUGET
Fixed in 14.14.0

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free