ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/pixel-accessor.h in SetPixelViaPixelInfo because of a MagickCore/enhance.c error.
{
"unresolved_ranges": [
{
"cpe": "cpe:2.3:a:imagemagick:imagemagick:7.0.8-50:q16:*:*:*:*:*:*",
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "7.0.8-50-q16"
}
]
},
{
"cpe": "cpe:2.3:o:opensuse:leap:15.0:*:*:*:*:*:*:*",
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "15.0"
}
]
},
{
"cpe": "cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*",
"source": "CPE_FIELD",
"extracted_events": [
{
"last_affected": "15.1"
}
]
}
]
}"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-13298.json"
"2026-04-11T21:45:03Z"
[
{
"deprecated": false,
"signature_type": "Line",
"digest": {
"line_hashes": [
"190471624712645205144282412248189258541",
"3649173883130254764649663626023202022",
"338218173642266734866211410821345651189",
"83354382301166623949514326501858921535"
],
"threshold": 0.9
},
"target": {
"file": "MagickCore/pixel-accessor.h"
},
"source": "https://github.com/imagemagick/imagemagick/commit/d4fc44b58a14f76b1ac997517d742ee12c9dc5d3",
"signature_version": "v1",
"id": "CVE-2019-13298-61bc60bf"
},
{
"deprecated": false,
"signature_type": "Line",
"digest": {
"line_hashes": [
"315134221588294827601099653899850744915",
"29073973362125229891653099302564549898",
"211853751290987291905831086256365074991",
"159776107695047974231795905161979964042"
],
"threshold": 0.9
},
"target": {
"file": "MagickCore/enhance.c"
},
"source": "https://github.com/imagemagick/imagemagick/commit/d4fc44b58a14f76b1ac997517d742ee12c9dc5d3",
"signature_version": "v1",
"id": "CVE-2019-13298-e595f4d5"
},
{
"deprecated": false,
"signature_type": "Function",
"digest": {
"function_hash": "265121571379295500558949380019766934115",
"length": 4607.0
},
"target": {
"file": "MagickCore/enhance.c",
"function": "EnhanceImage"
},
"source": "https://github.com/imagemagick/imagemagick/commit/d4fc44b58a14f76b1ac997517d742ee12c9dc5d3",
"signature_version": "v1",
"id": "CVE-2019-13298-eedf17b6"
}
]