[CLSA-2026:1775748729] ImageMagick: Fix of 4 CVEs
Type:
security
Severity:
Critical
Release date:
2026-04-09 15:32:13 UTC
Description:
- CVE-2026-25968: stack buffer overflow in MSL image-processing language via WriteMSLImage recursion - CVE-2026-25897: out-of-bounds heap write in SUN decoder on 32-bit systems via integer overflow in pixel buffer allocation - CVE-2025-53014: out-of-bounds read in InterpretImageFilename when processing escaped percent characters - CVE-2025-53101: out-of-bounds read in InterpretImageFilename via missing bounds check on format specifier parsing
Updated packages:
  • ImageMagick-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:7ff13fff3b047b787e9f9aa3a6399c21e5dfaaf602379acbf6624e4721ecfb3e
  • ImageMagick-c++-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:8d0ca789b03ea393b26cab49667fb84ffbb338507ad5a84fe493da9c3be3cd39
  • ImageMagick-c++-devel-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:da60f229271e114f569b21a9e5ab5e33a7307c89dc442fb42a340c6ac8fa3c43
  • ImageMagick-devel-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:c1464a8bb7a4f50280c9558e07450b8abcb60ced0cf0da3d8b78d233afe8166c
  • ImageMagick-djvu-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:77d3b7d76986df6cd6d11d1969238e107f4a29d42672bf0597607b29fb78025e
  • ImageMagick-doc-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:0e79a3b9ef6498282f7cd62cf8e74992c956a7af823b7e433a735eedb3dd4902
  • ImageMagick-libs-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:7ab869b32e6a3c76cfce812280f2cdff2d0ad46eb17954c7155ab867b871aca7
  • ImageMagick-perl-6.9.13.25-1.el8.tuxcare.els8.x86_64.rpm
    sha:446d13857549d8211edc78439c0e3d99e0de37a48d01c77d078a7d68021f0c76
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.