stable

ImageMagick-6.9.13.50-1.el9

FEDORA-EPEL-2026-49c3a0ffa2 created by luya a month ago for Fedora EPEL 9

Update to 6.9.13.50


Summary

This update fixes several security vulnerabilities, including multiple high-severity CVEs: Security fixes

  • CVE-2026-33901 (High) — Heap buffer overflow in the MVG decoder that could result in an out-of-bounds write when processing a crafted image.
  • CVE-2026-33908 (High) — Recursive DestroyXMLTree() call with no depth limit causes stack exhaustion when processing deeply nested XML structures, resulting in a Denial of Service (DoS).
  • CVE-2026-40310 (High) — Heap out-of-bounds write in the JP2 encoder triggered when a user specifies an invalid sampling index.

Additional security and bug fixes are included in the upstream releases between 6.9.13.25 and 6.9.13.49. See the upstream release history at: https://github.com/ImageMagick/ImageMagick6/releases

This update has been submitted for testing by luya.

a month ago

This update's test gating status has been changed to 'ignored'.

a month ago

This update has obsoleted ImageMagick-6.9.13.49-1.el9, and has inherited its bugs and notes.

a month ago

This update has been pushed to testing.

a month ago

This update has been submitted for stable by bodhi.

a month ago

This update has been pushed to stable.

a month ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
a month ago
in testing
a month ago
in stable
a month ago
approved
a month ago
BZ#2361978 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-8]
0
0
BZ#2361979 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-9]
0
0
BZ#2361980 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-8]
0
0
BZ#2361982 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-9]
0
0
BZ#2379979 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-10]
0
0
BZ#2379983 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-8]
0
0
BZ#2379984 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-8]
0
0
BZ#2379985 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-9]
0
0
BZ#2379986 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-8]
0
0
BZ#2379987 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-9]
0
0
BZ#2379989 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-8]
0
0
BZ#2379991 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-9]
0
0
BZ#2379993 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-9]
0
0
BZ#2388310 CVE-2025-55160 ImageMagick: ImageMagick: Undefined Behavior [epel-8]
0
0

Automated Test Results