[CLSA-2026:1774999144] ImageMagick: Fix of 7 CVEs
Type:
security
Severity:
Important
Release date:
2026-04-01 11:43:36 UTC
Description:
- CVE-2026-28494: fix stack buffer overflow in morphology kernel parsing - CVE-2026-28691: fix uninitialized pointer dereference in JBIG decoder - CVE-2026-25989: fix off-by-one boundary check in CastDouble functions - CVE-2026-25985: fix memory allocation without limits in SVG decoder - CVE-2026-24485: fix infinite loop in PCD decoder - CVE-2025-66628: fix integer overflow in TIM decoder on 32-bit systems - CVE-2026-28693: fix integer overflow in DIB/BMP coder
Updated packages:
  • ImageMagick-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:079d390561438a7d54816ba47a91b2bfc8f09a1e3a4949bd67197aca438fd355
  • ImageMagick-c++-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:661a984c441981c1845518af7e5a766834083bd390c3cba100bc98e31c6a8102
  • ImageMagick-c++-devel-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:0944cd9ddce8081a50180b22b038a4b79c7cf9c417d16683c4e0697845081836
  • ImageMagick-devel-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:109cdd1a17061b28846ee864b6ce2b7f198efc12b0e9fc4ed7726f3cc19b15b3
  • ImageMagick-djvu-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:6752c62c1d7642da068a7cc907df42e1ef1641e329740dbc8675f7a6777b96fd
  • ImageMagick-doc-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:4de296bb0171fecdd1f682a92199a201f78452e6a98e98367f8332ac060e7df6
  • ImageMagick-libs-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:732c8338e696e33ddc34afb63b31afd753850e1134d50fd69b83510b6d53fc09
  • ImageMagick-perl-6.9.13.25-1.el9_2.tuxcare.els5.x86_64.rpm
    sha:ff3475e4cc1bb5384457c51095768b14a0afd3da1f607682d732b845b5d89067
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.