[Git][security-tracker-team/security-tracker][master] Add new imagemagick issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jul 15 22:10:48 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d71c0947 by Salvatore Bonaccorso at 2026-07-15T23:10:25+02:00
Add new imagemagick issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -51,13 +51,25 @@ CVE-2026-62164
 CVE-2026-61873 (Grav before 9.1.8 contains an arbitrary file write vulnerability in th ...)
 	NOT-FOR-US: Grav CMS
 CVE-2026-61872 (ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in th ...)
-	TODO: check
+	- imagemagick 8:7.1.2.26+dfsg1-1
+	NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-h5r4-w88w-7ccr
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/ed143b98d72bba764b010eb822464f2a12b24ff1 (7.1.2-26)
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/3f0595f0778201326163253bfdc8bce9a4bbadf6 (6.9.13-51)
 CVE-2026-61871 (ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in th ...)
-	TODO: check
+	- imagemagick 8:7.1.2.26+dfsg1-1
+	NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-h58x-r7f7-rh84
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/b237a4fa9cbffcb11ee579d386fd37c570d5dffe (7.1.2-26)
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/e4b68bfb6a9541a9c3a4af81a21bf0c253661083 (6.9.13-51)
 CVE-2026-61869 (ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in th ...)
-	TODO: check
+	- imagemagick 8:7.1.2.26+dfsg1-1
+	NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-r628-69v2-2f9c
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/b2dc602e175ee07b0794f3e31f1a29ae6b7267d1 (7.1.2-26)
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/ca6c9da425880fde937da41d59666dedf5e719e1 (6.9.13-51)
 CVE-2026-61868 (ImageMagick before 7.1.2-26 and 6.9.x before 6.9.13-51 contains a memo ...)
-	TODO: check
+	- imagemagick 8:7.1.2.26+dfsg1-1
+	NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-h7f2-f9cc-h2gv
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/808506dc4d0cbf3972ce0d57544a06209b65009c (7.1.2-26)
+	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/875bd8912b3b54a58e09c14085cf2b14a478a86b (6.9.13-51)
 CVE-2026-61867 (ImageMagick before 7.1.2-26 contains a memory leak vulnerability in th ...)
 	TODO: check
 CVE-2026-61866 (ImageMagick before 7.1.2-26 contains a memory leak vulnerability in th ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d71c0947f826ccd58cfa7f65ece6739a79ff3390

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d71c0947f826ccd58cfa7f65ece6739a79ff3390
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260715/52140cd4/attachment.htm>


More information about the debian-security-tracker-commits mailing list