关键信息汇总 Vulnerability Title: Out of bounds read in multiple coders that read raw pixel data Severity: Moderate CVSS v3 Base Metrics: - Attack Vector: Local - Attack Complexity: High - Privileges Required: None - User Interaction: None - Scope: Unchanged - Confidentiality: High - Integrity: None - Availability: None Package: ImageMagick (C/C++) Affected Versions: - < 7.1.2-15 - < 6.9.13-40 Patched Versions: - 7.1.2-15 and above - 6.9.13-40 and above CVE ID: CVE-2026-25576 Description: A heap buffer over-read vulnerability exists in multiple raw image format handles when processing images with larger than . This leads to out-of-bounds memory reads from a heap-allocated buffer. Weaknesses: - CWE-122: Heap-based Buffer Overflow