Debian alert DLA-4609-1 (imagemagick)
| From: | rouca@debian.org | |
| To: | <debian-lts-announce@lists.debian.org> | |
| Subject: | [SECURITY] [DLA 4609-1] imagemagick security update | |
| Date: | Sat, 30 May 2026 23:50:27 +0200 | |
| Message-ID: | <5b9f7c53e715d91695c064ac1ea1d389@debian.org> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4609-1 debian-lts@lists.debian.org https://www.debian.org/lts/security/ Bastien Roucariès May 30, 2026 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : imagemagick Version : 8:6.9.11.60+dfsg-1.3+deb11u13 CVE ID : CVE-2026-33901 CVE-2026-42050 CVE-2026-42326 CVE-2026-45031 CVE-2026-45358 CVE-2026-45359 CVE-2026-45624 CVE-2026-45664 CVE-2026-46520 CVE-2026-46521 CVE-2026-46522 CVE-2026-46523 CVE-2026-46559 CVE-2026-46692 CVE-2026-46693 CVE-2026-47165 CVE-2026-47166 Multiple security vulnerabilities were discovered in imagemagick, a software suite used for editing and manipulating digital images, which could lead to denial of service, information disclosure or potentially arbitrary code execution if malformed images are processed. For Debian 11 bullseye, these problems have been fixed in version 8:6.9.11.60+dfsg-1.3+deb11u13. We recommend that you upgrade your imagemagick packages. For the detailed security status of imagemagick please refer to its security tracker page at: https://security-tracker.debian.org/tracker/imagemagick Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEXQGHuUCiRbrXsPVqADoaLapBCF8FAmobW6MACgkQADoaLapB CF+gJBAAmXM45jsW/PptPgLhMnY6JN2OeS4lVyhAfxaR0WoYXo2SIY1aUgzVIFSb S7fyNu72LsJPQbf7FsTDv1kZjfEOMg5hmk3XYH6p9t5COgppbkOYsRTg4pRQwvoz CaNscrxhU/5jxK8bwq3OpQlAt2ccSjLMh5VulfEDpLiAREGgljjvYaGEKn3+cEC+ rT6zOMeA8DMzUoa/K8SjXmqQAHro0W/8VdeU4pmdsSLd8VZ+VjlhkSX9KAuj/qhq 0Ts3ioqbxQzj/jx3lxbDqcw/bdMKoqLb69Tkl/F/SPiwhrz9gUIX8/ZNks9EMpL8 lhc6iIvDG0N3v0pJC5df5DPXw7qLEuqP5UibnkWA28HlJgw6UXewc/Pl0g4AHBHc Xe7s43+EVg7cgOfTA8Jx+u4xgapq8fyVAYQV5nFJX/ecV/LkUKiXLTRu20f3mYwF nk+nHYWfj7XazNXpJ+F4hS8aGAYwm7GU6ReZagcgOTAu0M3CEuyCPJvPn4I1tdG9 qdLGhAY/FqZf1dCkVdsDw9wxasKohdU0cRLC3qKSRH0k8vGlbrsO0FgtSakUeRff F9cuK2bv4rBQO/8xWkXiqGZvNtIxOqC1JN7Z5qbOtqndR56js4l4tI/FvWzcmdTp tuewKyBumlih1lyEdvd28+av850XV9+8Ml86uXsJlhVg2wbooU4= =3kI+ -----END PGP SIGNATURE-----
