ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-13 and 6.9.13-38, a heap buffer overflow vulnerability in the XBM image decoder (ReadXBMImage) allows an attacker to write controlled data past the allocated heap buffer when processing a maliciously crafted image file. Any operation that reads or identifies an image can trigger the overflow, making it exploitable via common image upload and processing pipelines. Versions 7.1.2-13 and 6.9.13-38 fix the issue.
{
"cwe_ids": [
"CWE-122",
"CWE-190"
],
"cna_assigner": "GitHub_M",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23876.json"
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-23876.json"
[
{
"source": "https://github.com/imagemagick/imagemagick/commit/2fae24192b78fdfdd27d766fd21d90aeac6ea8b8",
"digest": {
"length": 5927.0,
"function_hash": "301050558174430553095881879628134542518"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"target": {
"file": "coders/xbm.c",
"function": "ReadXBMImage"
},
"id": "CVE-2026-23876-3fd27ad0"
},
{
"source": "https://github.com/imagemagick/imagemagick/commit/2fae24192b78fdfdd27d766fd21d90aeac6ea8b8",
"digest": {
"line_hashes": [
"153488735634503742063075793583583419766",
"151035792594200767087947572022555052888",
"246596063670041837841078730940470686960",
"102046324942256290864802673304964499983",
"192773539527833535755663110292350958540",
"59949649723620782982103334836518145836",
"288151728789061509356211397248734572866",
"149954635204736184282218527517057610231",
"243672719136017507094854678962289248767",
"142794999755651416294725859261364924062",
"54463873722427840894299965544228630075",
"26979593393975653519935771957415865102",
"63112663792603390558274333378016984824",
"90762982726299589267835742811199753294",
"280643710439985736085124063649246960596",
"23017625491497481509390355853184019655",
"337641583578302133859173645075590611528",
"45894959649522975196773393776876078753",
"168680500798581478775003068756856103246",
"102664902008367114315742341575508190233",
"337421893251130700582466176796098312492",
"66578945725007564212663348501110054520",
"254907867077259445868612254708338026534",
"173301233612599047716742687050505935976"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"target": {
"file": "coders/xbm.c"
},
"id": "CVE-2026-23876-4b6786e8"
}
]