[CLSA-2026:1773768935] Fix CVE(s): CVE-2026-25968, CVE-2026-25986, CVE-2026-25987
Type:
security
Severity:
Critical
Release date:
2026-03-17 17:35:39 UTC
Description:
* SECURITY UPDATE: stack buffer overflow in MSL opacity attribute parser - debian/patches/CVE-2026-25968.patch: replace fixed-size stack buffer with heap-allocated string and add length check - CVE-2026-25968 * SECURITY UPDATE: heap buffer overflow write in YUV 4:2:2 image processing - debian/patches/CVE-2026-25986.patch: fix off-by-one in pixel-pair loop bound in ReadYUVImage and WriteYUVImage - CVE-2026-25986 * SECURITY UPDATE: heap buffer over-read in MAP image decoder - debian/patches/CVE-2026-25987.patch: validate colormap size against depth before buffer allocation - CVE-2026-25987
Updated packages:
  • imagemagick_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:1075fa98f865ae34c4b18a8a8c4e7ddbc3f55a76
  • imagemagick-6-common_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:bbfdafde23d74e1c46b4160adfa59fc42770955c
  • imagemagick-6-doc_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:2ab51504d3eefb9fbcf1945f59b97acb5f31cb63
  • imagemagick-6.q16_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:543f9dcf1b47ad551ec1ffe31b87b36745c08653
  • imagemagick-6.q16hdri_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:78f931b4abe04f1eb1bce0b209210c20b81e45b1
  • imagemagick-common_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:418659eecefd02140e8d6bb79da27538cf05760d
  • imagemagick-doc_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:35489f1dbd0237fa4e37307629d5441923ed0bc0
  • libimage-magick-perl_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:1ed281bb47f1b83c714e8bded6e399a05f7dd3d6
  • libimage-magick-q16-perl_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:f654e7620d613cd212107cbf29fc4ffd4106ae57
  • libimage-magick-q16hdri-perl_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:44b300c673f5f91bd87f79cac83bb52178630377
  • libmagick++-6-headers_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:a83974162d162285975fe71f831d51ad9727c961
  • libmagick++-6.q16-8_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:12d55b94c129be17ce9f51758af5ddd65acd94f0
  • libmagick++-6.q16-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:09539c93e6aeeb8817374ced58757888e536be8e
  • libmagick++-6.q16hdri-8_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:cdb83bf8dff73eb91d9dde10caf1d76471dfb9f7
  • libmagick++-6.q16hdri-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:bbddd869492a9ca4fa119974b31a82c6a79d8c00
  • libmagick++-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:5ba43efc7123c5c82fcdc0257e99a223a5baf2c2
  • libmagickcore-6-arch-config_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:1b7e225e194b3510d50ddd988b5343255da17065
  • libmagickcore-6-headers_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:5f2dfad425f8d0801c32e7bfe412bd566d095295
  • libmagickcore-6.q16-6_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:ff107f5c70220c838ff8c4c967510db322518d8a
  • libmagickcore-6.q16-6-extra_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:74836fc17e642206a72a572c7bb2a04c35a9ce0d
  • libmagickcore-6.q16-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:179c461d72fe46012e9ddd975d7e97c4548ca850
  • libmagickcore-6.q16hdri-6_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:fe83b1d9403547e7533d7b73ee8a0aaa9b08a213
  • libmagickcore-6.q16hdri-6-extra_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:a48166fec552773e2bd388969643b5eafad0eac0
  • libmagickcore-6.q16hdri-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:89abde159c803ff62109cf09d01bf78c6fcef30f
  • libmagickcore-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:51ecf269e441644d1c6a1582dcff4180e46a0730
  • libmagickwand-6-headers_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:898af8a43301dcccaa372288c52d8341f760c625
  • libmagickwand-6.q16-6_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:d58a22c30c9dbd0f4c0eb128b658d78e5181c74d
  • libmagickwand-6.q16-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:3c307a6909e7c9ccb55a8885667385cee737d28b
  • libmagickwand-6.q16hdri-6_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:8bb9fe407dce890cef8e50e8994475a74825ba05
  • libmagickwand-6.q16hdri-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_amd64.deb
    sha:5f757b1d1a6cbaf8a2da4b6bf806ed6818bfd873
  • libmagickwand-dev_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:4272cdd0b9a7e66bda573c67719859e8da4f4918
  • perlmagick_6.9.10.23+dfsg-2.1ubuntu11.11+tuxcare.els17_all.deb
    sha:2ebb4adc385f74ec55f0adda91acca66ce75e50d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.