ELA-1407-1 imagemagick security update

mishandling of image depth

2025-04-26
Packageimagemagick
Version8:6.8.9.9-5+deb8u28 (jessie), 8:6.9.7.4+dfsg-11+deb9u21 (stretch), 8:6.9.10.23+dfsg-2.1+deb10u10 (buster)
Related CVEs CVE-2025-43965


Mishandling of MIFF image depth after SetQuantumFormat() has been fixed in ImageMagick, a software suite for editing and manipulating digital images.



For Debian 10 buster, these problems have been fixed in version 8:6.9.10.23+dfsg-2.1+deb10u10.

For Debian 8 jessie, these problems have been fixed in version 8:6.8.9.9-5+deb8u28.

For Debian 9 stretch, these problems have been fixed in version 8:6.9.7.4+dfsg-11+deb9u21.

We recommend that you upgrade your imagemagick packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.