[CLSA-2026:1784536823] ImageMagick: Fix of 17 CVEs
Type:
security
Severity:
Critical
Release date:
2026-07-20 08:41:21 UTC
Description:
- Rebase to upstream 6.9.13.50, matching EPEL 8 ImageMagick-6.9.13.50-1.el8 - Drop the TuxCare CVE patches whose fixes are included in the upstream 6.9.13.50 release - Keep the MSL empty-image crash fix (partial backport of upstream fde1f305, not present in the legacy 6.x line) - CVE-2026-45664: free the chunk buffer on the MNG LOOP/ENDL op-cap abort path (upstream dd198f960, not yet included in 6.9.13.50) to prevent a heap memory leak when the loop-operation limit is hit
Updated packages:
  • ImageMagick-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:76a8146246aaf73334105308473c8b7bd05f5820eb5977ee8b30d02a7f253d47
  • ImageMagick-c++-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:4206a5597507a4a1f91aae8b44b955d07298d7575d2d90e50d743e016a7f521a
  • ImageMagick-c++-devel-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:319f9ad099e2294bc4ea7c39bd345ba55b236a8b76ea943e753f9fc70f4a8010
  • ImageMagick-devel-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:1484db258fade589c1a8d632dadda50bb2578a85d35f1f3da7308075d309ea03
  • ImageMagick-djvu-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:aba39fde4f58c2b8849ddc01f908f973e5e1b6d6d795aeae22d1881d19875093
  • ImageMagick-doc-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:719170b4cad18939a2cf428748c38448bb6188c4a67f399d0fd59a186de11532
  • ImageMagick-libs-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:52b63d13cffdfa61a4162dffe474b958173d4b9d0467cbe81c634f1c17621cf1
  • ImageMagick-perl-6.9.13.50-1.el8.tuxcare.els1.x86_64.rpm
    sha:eb36f3ea3bf0e0fa752e3236a4529039d69f7598f93dff39d8dd92f7e0354ed0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.