CVE-2026-33902

medium Red Hat
CVSS v3 Base Score
5.5
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Confidentiality
None
Integrity
None
Availability
High
Published: April 13, 2026 (30 days ago)
Last Modified: April 13, 2026
Vendor: Red Hat
Source: REDHAT

Description

A flaw was found in ImageMagick, a software used for editing and manipulating digital images. An attacker can exploit this vulnerability by providing a deeply nested expression to ImageMagick's FX expression parser. This can lead to a stack overflow, causing the process to crash and resulting in a Denial of Service (DoS).

CWE

CWE-770

Affected Products

Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7

References