obsolete

ImageMagick-6.9.13.49-1.el8

FEDORA-EPEL-2026-fb9a9ab1e9 created by luya a month ago for Fedora EPEL 8

Summary

This update fixes several security vulnerabilities, including multiple high-severity CVEs: Security fixes

  • CVE-2026-33901 (High) — Heap buffer overflow in the MVG decoder that could result in an out-of-bounds write when processing a crafted image.
  • CVE-2026-33908 (High) — Recursive DestroyXMLTree() call with no depth limit causes stack exhaustion when processing deeply nested XML structures, resulting in a Denial of Service (DoS).
  • CVE-2026-40310 (High) — Heap out-of-bounds write in the JP2 encoder triggered when a user specifies an invalid sampling index.

Additional security and bug fixes are included in the upstream releases between 6.9.13.25 and 6.9.13.49. See the upstream release history at: https://github.com/ImageMagick/ImageMagick6/releases

Logout Required
After installing this update it is required that you logout of your current user session and log back in to ensure the changes supplied by this update are applied properly.

This update has been submitted for testing by luya.

a month ago

This update's test gating status has been changed to 'ignored'.

a month ago

This update has been pushed to testing.

a month ago

This update has been obsoleted by ImageMagick-6.9.13.50-1.el8.

a month ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Thresholds
Minimum Karma
+1
Minimum Testing
7 days
Dates
submitted
a month ago
in testing
a month ago
BZ#2361978 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-8]
0
0
BZ#2361979 CVE-2025-46393 ImageMagick: Incorrect Calculation of Buffer Size in ImageMagick's Multispectral MIFF Processing [epel-9]
0
0
BZ#2361980 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-8]
0
0
BZ#2361982 CVE-2025-43965 ImageMagick: Incorrect Handling of Image Depth in MIFF Processing in ImageMagick [epel-9]
0
0
BZ#2379979 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-10]
0
0
BZ#2379983 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-8]
0
0
BZ#2379984 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-8]
0
0
BZ#2379985 CVE-2025-53014 ImageMagick: ImageMagick Heap Buffer Overflow [epel-9]
0
0
BZ#2379986 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-8]
0
0
BZ#2379987 CVE-2025-53015 ImageMagick: ImageMagick unbounded loop [epel-9]
0
0
BZ#2379989 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-8]
0
0
BZ#2379991 CVE-2025-53019 ImageMagick: ImageMagick Memory Leak [epel-9]
0
0
BZ#2379993 CVE-2025-53101 ImageMagick: ImageMagick Stack Buffer Overflow [epel-9]
0
0
BZ#2388310 CVE-2025-55160 ImageMagick: ImageMagick: Undefined Behavior [epel-8]
0
0

Automated Test Results