Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2026:3298-1

Опубликовано: 27 июл. 2026
Источник: suse-cvrf

Описание

Security update for ImageMagick

This update for ImageMagick fixes the following issue

  • Extend CVE-2026-56379 patch by f63c78b (bsc#1268878).

Список пакетов

SUSE Linux Enterprise Server 12 SP5-LTSS
ImageMagick-config-6-SUSE-6.8.8.1-71.267.1
ImageMagick-config-6-upstream-6.8.8.1-71.267.1
ImageMagick-devel-6.8.8.1-71.267.1
libMagick++-devel-6.8.8.1-71.267.1
libMagickCore-6_Q16-1-6.8.8.1-71.267.1
libMagickWand-6_Q16-1-6.8.8.1-71.267.1
SUSE Linux Enterprise Server LTSS Extended Security 12 SP5
ImageMagick-config-6-SUSE-6.8.8.1-71.267.1
ImageMagick-config-6-upstream-6.8.8.1-71.267.1
ImageMagick-devel-6.8.8.1-71.267.1
libMagick++-devel-6.8.8.1-71.267.1
libMagickCore-6_Q16-1-6.8.8.1-71.267.1
libMagickWand-6_Q16-1-6.8.8.1-71.267.1

Описание

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.


Затронутые продукты
SUSE Linux Enterprise Server 12 SP5-LTSS:ImageMagick-config-6-SUSE-6.8.8.1-71.267.1
SUSE Linux Enterprise Server 12 SP5-LTSS:ImageMagick-config-6-upstream-6.8.8.1-71.267.1
SUSE Linux Enterprise Server 12 SP5-LTSS:ImageMagick-devel-6.8.8.1-71.267.1
SUSE Linux Enterprise Server 12 SP5-LTSS:libMagick++-devel-6.8.8.1-71.267.1

Ссылки