Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:2580-1

Опубликовано: 23 июн. 2026
Источник: suse-cvrf

Описание

Security update for ImageMagick

This update for ImageMagick fixes the following issues

This update for ImageMagick fixes the following issues

  • CVE-2026-33899: Denial of Service via out-of-bounds write in XML parsing (bsc#1262154).
  • CVE-2026-33900: Denial of Service via integer truncation in viff encoder (bsc#1262156).
  • CVE-2026-33901: Denial of Service due to heap buffer overflow in MVG decoder (bsc#1262155).
  • CVE-2026-33908: Denial of Service via deeply nested XML file processing (bsc#1262152).
  • CVE-2026-34238: Denial of Service via integer overflow in despeckle operation (bsc#1262147).
  • CVE-2026-40169: Denial of Service via crafted image leading to out-of-bounds write (bsc#1262150).
  • CVE-2026-40310: Denial of service via heap out-of-bounds write in JP2 encoder (bsc#1262148).
  • CVE-2026-40311: Denial of Service via heap use-after-free in XMP profile processing (bsc#1262146).
  • CVE-2026-42050: Stack buffer overflow in XTileImage (bsc#1265048).
  • CVE-2026-42326: Information disclosure via malicious IPTC input file (bsc#1268092).
  • CVE-2026-45031: Denial of Service due to resource policy bypass in PSD decoder (bsc#1268094).
  • CVE-2026-45359: Information Disclosure via Invalid Connected-Components Value (bsc#1268095).
  • CVE-2026-45624: Data exposure due to image processing vulnerability (bsc#1268096).
  • CVE-2026-45664: Denial of Service due to excessive resource use in MNG coder (bsc#1268101).
  • CVE-2026-46520: Denial of Service via out-of-bounds write when processing multiple images (bsc#1268112).
  • CVE-2026-46521: out of bounds write can occur due to a missing check when using LZMA compression in the MIFF encoder (bsc#1268124).
  • CVE-2026-46522: denial of service via crafted MIFF file due to a missing check in the MIFF decoder (bsc#1268126).
  • CVE-2026-46523: heap-use-after-free via a crafted MSL image (bsc#1268125).
  • CVE-2026-46559: heap buffer over-write of a single byte when specifying certain options due to n incorrect check in the JP2 (bsc#1268121).
  • CVE-2026-46692: heap buffer over-write in the server process via an attacker who can connect to a magick -distribute- cache service (bsc#1268120).
  • CVE-2026-46693: file descriptor hijacking in the server process when a race condition is met via an attacker who can connect to a magick -distribute-cache service (bsc#1268117).
  • CVE-2026-47165: distributed pixel cache was originally designed to operate without a challenge--response authentication model (bsc#1268114).
  • CVE-2026-47166: heap buffer over-read in the server process via an attacker who can connect to a magick -distribute- cache service (bsc#1268113).
  • CVE-2026-48734: Stack Overflow in MVG decoder (bsc#1268122).
  • CVE-2026-48994: heap buffer over-write due to a missing check of a return value in the MAT decoder on 32-bit systems (bsc#1268111).
  • CVE-2026-49218: denial of service due to a missing check in the DCM decoder (bsc#1268110).
  • CVE-2026-53460: out-of-Memory condition due to a missing check for maximum memory request in AcquireAlignedMemory (bsc#1268108).
  • CVE-2026-53463: null pointer deference due to passing incorrect arguments in the distort operation (bsc#1268105).
  • CVE-2026-53464: small memory leak due to providing invalid options to the wand option parser (bsc#1268103).

Список пакетов

SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-LTSS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP5-LTSS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP7
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server 15 SP4-LTSS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server 15 SP5-LTSS
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server 15 SP6-LTSS
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server for SAP Applications 15 SP4
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server for SAP Applications 15 SP5
ImageMagick-7.1.0.9-150400.6.87.1
ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
ImageMagick-devel-7.1.0.9-150400.6.87.1
libMagick++-7_Q16HDRI5-7.1.0.9-150400.6.87.1
libMagick++-devel-7.1.0.9-150400.6.87.1
libMagickCore-7_Q16HDRI10-7.1.0.9-150400.6.87.1
libMagickWand-7_Q16HDRI10-7.1.0.9-150400.6.87.1
perl-PerlMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise Server for SAP Applications 15 SP6
ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-189 and 6.9.13-44, when `Magick` parses an XML file it is possible that a single zero byte is written out of the bounds. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the viff encoder contains an integer truncation/wraparound issue on 32-bit builds that could trigger an out of bounds heap write, potentially causing a crash. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds write when processing a crafted image. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, Magick frees the memory of the XML tree via the `DestroyXMLTree()` function; however, this process is executed recursively with no depth limit imposed. When Magick processes an XML file with deeply nested structures, it will exhaust the stack memory, resulting in a Denial of Service (DoS) attack. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, an integer overflow in the despeckle operation causes a heap buffer overflow on 32-bit builds that will result in an out of bounds write. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, a crafted image could result in an out of bounds heap write when writing a yaml or json output, resulting in a crash. This issue has been fixed in version 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2-19 and 6.9.13-44, contain a heap out-of-bounds write in the JP2 encoder with when a user specifies an invalid sampling index. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 and 6.9.13-44 contain a heap use-after-free vulnerability that can cause a crash when reading and printing values from an invalid XMP profile. This issue has been fixed in versions 6.9.13-44 and 7.1.2-19.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-21 and 6.9.13-46, a malicious MIFF file could trigger an overflow when a user opens it in the display tool and right-clicks a tile to invoke the Load / Update menu item. This vulnerability is fixed in 7.1.2-21 and 6.9.13-46.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single byte. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource policy when decoding a PSD image. Other security limits would still apply. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing the connected components operation. This issue has been patched in versions 6.9.13-48 and 7.1.2-22.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifying specific arguments. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excessive resource use. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when using LZMA compression in the MIFF encoder an out of bounds write can occur due to a missing check. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in CPU exhaustion. Versions 7.1.2.23 and 6.9.13-48 fix the issue.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifying certain options. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-write in the server process. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can hijack a file descriptor in the server process when a race condition is met. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, the distributed pixel cache was originally designed to operate without a challenge-response authentication model. This has been changed in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-read in the server process. This issue has been patched in versions 6.9.13-48 and 7.1.2-23.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, a crafted MVG file could result in a stack overflow due to a missing depth or visited-set check. This issue has been patched in versions 6.9.13-49 and 7.1.2-24.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check of a return value could lead to a heap buffer over-write in the MAT decoder on 32-bit systems. This issue has been patched in versions 6.9.13-48 and 7.1.2-24.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check in the DCM decoder could result in an image with invalid dimensions and that could cause crashes in other operation. This issue has been patched in versions 6.9.13-48 and 7.1.2-24.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, a missing check for maximum memory request in AcquireAlignedMemory could trigger an out-of-Memory condition. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, when passing incorrect arguments in the distort operation a null pointer deference will occur. This issue has been patched in versions 6.9.13-50 and 7.1.2-25.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки

Описание

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-25, when providing invalid options to the wand option parser a small memory leak will occur. This issue has been patched in version 7.1.2-25.


Затронутые продукты
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-SUSE-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-config-7-upstream-7.1.0.9-150400.6.87.1
SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOS:ImageMagick-devel-7.1.0.9-150400.6.87.1

Ссылки
Уязвимость SUSE-SU-2026:2580-1