CVE-2019-11472: ImageMagick

Medium severity, CVSS 6.5. EPSS: 3.4% chance of exploitation in the next 30 days.

ReadXWDImage in coders/xwd.c in the XWD image parsing component of ImageMagick 7.0.8-41 Q16 allows attackers to cause a denial-of-service (divide-by-zero error) by crafting an XWD image file in which the header indicates neither LSB first nor MSB first.

Affected products

Published 2019-04-23. Last modified 2026-06-17.