[CLSA-2026:1775749572] ImageMagick: Fix of 4 CVEs
Type:
security
Severity:
Critical
Release date:
2026-04-09 15:46:16 UTC
Description:
- CVE-2026-25968: stack buffer overflow in MSL image-processing language via WriteMSLImage recursion - CVE-2026-25897: out-of-bounds heap write in SUN decoder on 32-bit systems via integer overflow in pixel buffer allocation - CVE-2025-53014: out-of-bounds read in InterpretImageFilename when processing escaped percent characters - CVE-2025-53101: out-of-bounds read in InterpretImageFilename via missing bounds check on format specifier parsing
Updated packages:
  • ImageMagick-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:da9a7771ae1dfd3d31f11025768e73b22d15d7b5c39e7038324c3f98053d96f7
  • ImageMagick-c++-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:19eb78e354befeb7135938b01108b94859cec9c4664e85440ea070e0ef3c299b
  • ImageMagick-c++-devel-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:e0b7f718e402929d4ab234c89b7ebce49842a29a30b0748b52f310c68ed8e43c
  • ImageMagick-devel-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:a5c7fc5919d10b08e4a5f94f6be47f1d701041a4e793a86e5f94ca372a19f472
  • ImageMagick-djvu-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:46c583a996459656e76ac1f51b68d836240855be99cdd7647faafbd1d0e8d617
  • ImageMagick-doc-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:49edf9cfa8fe2250e2ec6899073c6a22f7036426b901152cda03cb0a968fea11
  • ImageMagick-libs-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:a18babd3e5b93863e58e99df458996203eb92fdee0c8306e6629e1c0ef84d76a
  • ImageMagick-perl-6.9.13.25-1.el8_5.tuxcare.els8.x86_64.rpm
    sha:dcef7bd0c3bd16ceb1bbedff8f6db422b4faa01db42e63cec4138d3a4f84c31b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.