Advisories ยป MGASA-2025-0141

Updated imagemagick packages fix security vulnerabilities

Publication date: 01 May 2025
Modification date: 01 May 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2025-43965 , CVE-2025-46393

Description

In MIFF image processing in ImageMagick before 7.1.1-44, image depth is
mishandled after SetQuantumFormat is used. (CVE-2025-43965)
In multispectral MIFF image processing in ImageMagick before 7.1.1-44,
packet_size is mishandled (related to the rendering of all channels in
an arbitrary order). (CVE-2025-46393)
                

References

SRPMS

9/core

9/tainted