CVE-2019-11472 is a denial-of-service vulnerability affecting ImageMagick versions 7.0.8-41 Q16 and earlier. It stems from a divide-by-zero error in the XWD image parsing component, triggered by a specially crafted XWD file with an ambiguous header. Rated Medium (CVSS 6.5), this vulnerability requires user interaction (e.g., opening a malicious file) but could lead to system unavailability. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
7.0.8-41CPE matchmatch criteria | cpe:2.3:a:imagemagick:imagemagick:7.0.8-41:q16:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.