stable

ImageMagick-6.9.13.50-1.el8

FEDORA-EPEL-2026-bc7538a3d7 created by luya a month ago for Fedora EPEL 8

Update to 6.9.13.50


Summary

This update fixes several security vulnerabilities, including multiple high-severity CVEs: Security fixes

  • CVE-2026-33901 (High) — Heap buffer overflow in the MVG decoder that could result in an out-of-bounds write when processing a crafted image.
  • CVE-2026-33908 (High) — Recursive DestroyXMLTree() call with no depth limit causes stack exhaustion when processing deeply nested XML structures, resulting in a Denial of Service (DoS).
  • CVE-2026-40310 (High) — Heap out-of-bounds write in the JP2 encoder triggered when a user specifies an invalid sampling index.

Additional security and bug fixes are included in the upstream releases between 6.9.13.25 and 6.9.13.49. See the upstream release history at: https://github.com/ImageMagick/ImageMagick6/releases

This update has been submitted for testing by luya.

a month ago

This update's test gating status has been changed to 'ignored'.

a month ago

This update has obsoleted ImageMagick-6.9.13.49-1.el8, and has inherited its bugs and notes.

a month ago

This update has been pushed to testing.

a month ago

This update has been submitted for stable by bodhi.

4 weeks ago

This update has been pushed to stable.

4 weeks ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
a month ago
in testing
a month ago
in stable
4 weeks ago
approved
4 weeks ago
BZ#2361978 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-8]
0
0
BZ#2361979 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-9]
0
0
BZ#2361980 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-8]
0
0
BZ#2361982 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-9]
0
0
BZ#2379979 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-10]
0
0
BZ#2379983 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-8]
0
0
BZ#2379984 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-8]
0
0
BZ#2379985 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-9]
0
0
BZ#2379986 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-8]
0
0
BZ#2379987 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-9]
0
0
BZ#2379989 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-8]
0
0
BZ#2379991 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-9]
0
0
BZ#2379993 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-9]
0
0
BZ#2388310 CVE-2025-55160 ImageMagick: ImageMagick: Undefined Behavior [epel-8]
0
0

Automated Test Results