Описание
Security update for ImageMagick
This update for ImageMagick fixes the following issue:
- CVE-2026-64685: heap buffer overread in BGR decoder due to missing end-of-file check (bsc#1272953).
Список пакетов
SUSE Linux Enterprise Module for Desktop Applications 15 SP7
ImageMagick-config-7-upstream-7.1.0.9-150400.6.110.1
Ссылки
- Link for SUSE-SU-2026:3571-1
- E-Mail link for SUSE-SU-2026:3571-1
- SUSE Security Ratings
- SUSE Bug 1272953
- SUSE CVE CVE-2026-64685 page
Описание
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, the BGR decoder does not check for an end-of-file in every location so a crafted image could result in an heap buffer over-read. This issue has been fixed in version 7.1.2-27.
Затронутые продукты
SUSE Linux Enterprise Module for Desktop Applications 15 SP7:ImageMagick-config-7-upstream-7.1.0.9-150400.6.110.1
Ссылки
- CVE-2026-64685
- SUSE Bug 1272953