CLSA-2026-1775749004

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2026-1775749004
Upstream
Published
2026-04-09T15:36:48Z
Modified
2026-06-01T00:33:21.456954095Z
Summary
ImageMagick: Fix of 4 CVEs
Details
  • CVE-2026-25968: stack buffer overflow in MSL image-processing language via WriteMSLImage recursion
  • CVE-2026-25897: out-of-bounds heap write in SUN decoder on 32-bit systems via integer overflow in pixel buffer allocation
  • CVE-2025-53014: out-of-bounds read in InterpretImageFilename when processing escaped percent characters
  • CVE-2025-53101: out-of-bounds read in InterpretImageFilename via missing bounds check on format specifier parsing
References

Affected packages

TuxCare:CentOS:8.4
ImageMagick

Package

Name
ImageMagick
Purl
pkg:rpm/tuxcare/ImageMagick?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-c++

Package

Name
ImageMagick-c++
Purl
pkg:rpm/tuxcare/ImageMagick-c++?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-c++-devel

Package

Name
ImageMagick-c++-devel
Purl
pkg:rpm/tuxcare/ImageMagick-c++-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-devel

Package

Name
ImageMagick-devel
Purl
pkg:rpm/tuxcare/ImageMagick-devel?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-djvu

Package

Name
ImageMagick-djvu
Purl
pkg:rpm/tuxcare/ImageMagick-djvu?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-doc

Package

Name
ImageMagick-doc
Purl
pkg:rpm/tuxcare/ImageMagick-doc?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-libs

Package

Name
ImageMagick-libs
Purl
pkg:rpm/tuxcare/ImageMagick-libs?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"
ImageMagick-perl

Package

Name
ImageMagick-perl
Purl
pkg:rpm/tuxcare/ImageMagick-perl?distro=centos-8.4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.13.25-1.el8_4.tuxcare.els8

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos8.4els/CLSA-2026-1775749004.json"