[DSA 5997-1] imagemagick security update
Aron Xu <[email protected]>
| Newsgroups | gmane.linux.debian.user.security.announce |
|---|---|
| Message-ID | <[email protected]> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 - ------------------------------------------------------------------------- Debian Security Advisory DSA-5997-1 [email protected] https://www.debian.org/security/ Bastien Roucaries September 12, 2025 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : imagemagick CVE ID : CVE-2025-55004 CVE-2025-55005 CVE-2025-55154 CVE-2025-55212 CVE-2025-55298 CVE-2025-57803 CVE-2025-57807 Debian Bug : 1111101 1111102 1111103 1111586 1111587 1112469 1114520 Multiple memory corruption vulnerbilities were discovered in imagemagick, a software suit used for editing and manipulating digital images, which could lead to information leak, denial of service, and potentially arbitrary code execution. For the oldstable distribution (bookworm), these problems have been fixed in version 6.9.11.60+dfsg-1.6+deb12u4. For the stable distribution (trixie), these problems have been fixed in version 8:7.1.1.43+dfsg1-1+deb13u2. We recommend that you upgrade your imagemagick packages. For the detailed security status of imagemagick please refer to its security tracker page at: https://security-tracker.debian.org/tracker/imagemagick Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: [email protected] -----BEGIN PGP SIGNATURE----- iQEzBAEBCAAdFiEEBLHAyuu1xqoC2aJ5NP8o68vMTMgFAmjDBloACgkQNP8o68vM TMjV9AgAggLtBOTLDNPc7FyDw6oUs9nqyH5I0+en/f81YCj8CP/q1thoGeHprXux r/BG3DGILmv6QxGoAnW3D8SzLbOAIwI6Uig1sWVoTSCpWqutGhDIx8kcNU2liiQv bsdJoOhR4emz8Gh9dJxz3bQrJ6VRbYXi1m5L6P6/rG4DG3UyEft7+AHfk8xSvT6+ CE8kmQ1V64EtVoZFJfk/trUstXze8gQyXSKmmcn3WBTebtA+4NODkQmHvJ11WggN nVSDyxd9agXodYPP5kUqOGkQMSTrxZ/St9buShJoFfueJbp405kh5a+PtE+R2Re0 Q3gXIHmG9OV3mnJX1wgez/qQHCjmng== =SiQF -----END PGP SIGNATURE-----