Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
3e2d43d9 by Salvatore Bonaccorso at 2026-02-24T15:46:49+01:00
Add more imagemagick issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -90,17 +90,26 @@ CVE-2026-26284 (ImageMagick is free and open-source 
software used for editing an
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/0c9ffcf55763e5daf1b61dfed0deed1aa43e217f
 (7.1.2-14)
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/5204a166fd2463905025378303c7e3715163d0e7
 (6.9.13-39)
 CVE-2026-26283 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-gwr3-x37h-h84v
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/c448c6920a985872072fc7be6034f678c087de9b
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/8b47529f22404853d22205583087add01ea9fae8
 (6.9.13-39)
 CVE-2026-26198 (Ormar is a async mini ORM for Python. In versions 0.9.9 
through 0.22.0 ...)
        TODO: check
 CVE-2026-26066 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-v994-63cg-9wj3
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/880057ce34f6da9dff2fe3b290bbbc45b743e613
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/c20c915e2fea200b6210b4759a6f83bba077ed78
 (6.9.13-39)
 CVE-2026-26025 (free5GC SMF provides Session Management Function for free5GC, 
an open- ...)
        NOT-FOR-US: Free5GC
 CVE-2026-26024 (free5GC SMF provides Session Management Function for free5GC, 
an open- ...)
        NOT-FOR-US: Free5GC
 CVE-2026-25989 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-7355-pwx2-pm84
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/5a545ab9d6c3d12a6a76cfed32b87df096729d95
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick5/commit/7fc7208f8f3073d768b8b1658fd6ecda1ef6e1c5
 (6.9.13-39)
 CVE-2026-25988 (ImageMagick is free and open-source software used for editing 
and mani ...)
        - imagemagick <unfixed>
        NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-782x-jh29-9mf7
@@ -117,7 +126,10 @@ CVE-2026-25986 (ImageMagick is free and open-source 
software used for editing an
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/b9c80ad3ca802b6883da25f153c4fdf72c017eba
 (7.1.2-14)
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/99340686966580c06a1599e247dc41fb59a430c8
 (6.9.13-39)
 CVE-2026-25985 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-v7g2-m8c5-mf84
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/1a51eb9af00c36724660e294520878fd1f13e312
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/d186398f2c2f06692dc18eaf781042368c6659a5
 (6.9.13-39)
 CVE-2026-25984
        REJECTED
 CVE-2026-25983 (ImageMagick is free and open-source software used for editing 
and mani ...)
@@ -160,9 +172,17 @@ CVE-2026-25965 (ImageMagick is free and open-source 
software used for editing an
        NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-8jvj-p28h-9gm7
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/4a9dc1075dcad3ab0579e1b37dbe854c882699a5
 (7.1.2-14)
 CVE-2026-25898 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-vpxv-r9pg-7gpr
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/c9c87dbaba56bf82aebd3392e11f0ffd93709b12
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/21525d8f27b86e8063fe359616086fd6b71eb05b
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/66d3a6497eb89b3ce2a7b86cc23be6d69bce9220
 (6.9.13-39)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/abfbcfe8e7884deb3560c74569c96ee4b068f3a6
 (6.9.13-39)
 CVE-2026-25897 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-6j5f-24fw-pqp4
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/23fde73188ea32c15b607571775d4f92bdb75e60
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/5e28bb254210580ac12234cc9ba4ae57c193129c
 (6.9.13-39)
 CVE-2026-25802 (New API is a large language mode (LLM) gateway and artificial 
intellig ...)
        TODO: check
 CVE-2026-25799 (ImageMagick is free and open-source software used for editing 
and mani ...)
@@ -176,13 +196,25 @@ CVE-2026-25798 (ImageMagick is free and open-source 
software used for editing an
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/16dd3158ce197c6f65e7798a7a5cc4538bb0303e
 (7.1.2-14)
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/93a38e3a7bfb7a492409275321eca94df7cd03a7
 (6.9.13-39)
 CVE-2026-25797 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-rw6c-xp26-225v
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/26088a83d71e9daa203d54a56fe3c31f3f85463d
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/81129f79ad622ff4c1d729828a34ab0f49ec89f6
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/7284564901441ddb04dadaad306e9f0fb527d71f
 (6.9.13-39)
 CVE-2026-25796 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-g2pr-qxjg-7r2w
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/93ad259ce4f6d641eea0bee73f374af90f35efc3
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/29aeed740553ed4e5c544e101ac468be55a919ff
 (6.9.13-39)
 CVE-2026-25795 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-p33r-fqw2-rqmm
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/0c7d0b9671ae2616fca106dcada45536eb4df5dc
 (7.1.2-14)
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick6/commit/b2b4f0107ba3a4427f1b5ded803c1d2cc77f2a89
 (6.9.13-39)
 CVE-2026-25794 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-vhqj-f5cj-9x8h
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/ffe589df5ff8ce1433daa4ccb0d2a9fadfbe30ed
 (7.1.2-14)
 CVE-2026-25649 (Versions of the Traccar open-source GPS tracking system up to 
and incl ...)
        TODO: check
 CVE-2026-25648 (Versions of the Traccar open-source GPS tracking system 
starting with  ...)
@@ -192,7 +224,9 @@ CVE-2026-25638 (ImageMagick is free and open-source 
software used for editing an
        NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-gxcx-qjqp-8vjw
        NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/1e88fca11c7b8517100d518bc99bd8c474f02f88
 (7.1.2-14)
 CVE-2026-25637 (ImageMagick is free and open-source software used for editing 
and mani ...)
-       TODO: check
+       - imagemagick <unfixed>
+       NOTE: 
https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-gm37-qx7w-p258
+       NOTE: Fixed by: 
https://github.com/ImageMagick/ImageMagick/commit/30ce0e8efbd72fd6b50ed3a10ae22f57c8901137
 (7.1.2-14)
 CVE-2026-25591 (New API is a large language mode (LLM) gateway and artificial 
intellig ...)
        TODO: check
 CVE-2026-25576 (ImageMagick is free and open-source software used for editing 
and mani ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3e2d43d90275ceec1b60f92b824720289a0a8361

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/3e2d43d90275ceec1b60f92b824720289a0a8361
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to