[Git][security-tracker-team/security-tracker][master] CVE-2026-53462/imagemagick
Bastien Roucariès (@rouca)
rouca at debian.org
Sun Jun 21 09:36:12 BST 2026
Bastien Roucariès pushed to branch master at Debian Security Tracker / security-tracker
Commits:
df390204 by Bastien Roucariès at 2026-06-21T10:35:35+02:00
CVE-2026-53462/imagemagick
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -5155,11 +5155,14 @@ CVE-2026-53463 (ImageMagick is free and open-source software used for editing an
CVE-2026-53462 (ImageMagick is free and open-source software used for editing and mani ...)
- imagemagick 8:7.1.2.25+dfsg1-1
[trixie] - imagemagick <not-affected> (vulnerable code introduced later)
+ [bookworm] - imagemagick <not-affected> (vulnerable code introduced later)
+ [bullseye] - imagemagick <not-affected> (vulnerable code introduced later)
NOTE: https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-px7q-ggqj-hcf2
NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/6c8afb5bc8e408061acb14757f1cdf466fbfad48 (7.1.2-25)
- NOTE: Introduced with: https://github.com/ImageMagick/ImageMagick/commit/41c2d472d6a352955580893eb6be94131a0ac92f (7.1.2.22)
+ NOTE: Introduced by: https://github.com/ImageMagick/ImageMagick/commit/41c2d472d6a352955580893eb6be94131a0ac92f (7.1.2-22)
NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick6/commit/1ce3a45eb58a3dda8b2cd77fb758a7fdbeabfea7 (6.9.13-50)
- NOTE: Introduced by optiomisation of CheckPrimitiveExtend method
+ NOTE: Introduced by: https://github.com/ImageMagick/ImageMagick6/commit/fee489246e3b62bff1a946b6d4ef32e81ead4799 (6.9.13-47)
+ NOTE: Introduced by optimisation of CheckPrimitiveExtend method
CVE-2026-53461 (ImageMagick is free and open-source software used for editing and mani ...)
- imagemagick 8:7.1.2.25+dfsg1-1
[bookworm] - imagemagick <not-affected> (vulnerable code introduced later)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df39020446a967c5a38eca7aab9bce3508967008
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df39020446a967c5a38eca7aab9bce3508967008
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260621/98c04d83/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list