{"id":"ECHO-583a-fd1b-c4e8","upstream":["CVE-2023-34152"],"severity":[],"modified":"2025-10-22T13:30:07.603Z","affected":[{"package":{"ecosystem":"Echo","name":"imagemagick"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"8:7.1.1.43+dfsg1-1+deb13u2"}]}]}],"references":[{"type":"WEB","url":"https://advisory.echohq.com/cve/CVE-2023-34152"}],"withdrawn":"2025-10-22T13:30:07.603Z","summary":"Only applicable if pipes are enabled for the build, which they are not by the default configuration.\nFrom Debian: Only an issue when configured with --enable-pipes. Enabling pipes are\na security risk per se and user needs to take precautions accordingly\nwhen enabled.\nhttps://security-tracker.debian.org/tracker/CVE-2023-34152\nhttps://github.com/ImageMagick/ImageMagick/issues/6339#issuecomment-1559698800\n"}