- Package:
- release.debian.org
- Source:
- release.debian.org
- Submitter:
- Bastien Roucaries
- Date:
- 2026-09-12 08:07:25 UTC
- Severity:
- normal
- Tags:
[ Reason ] About 22 low impact CVEs [ Impact ] CVE are not closed [ Tests ] Automatic [ Risks ] Low [ Checklist ] [X] *all* changes are documented in the d/changelog [X] I reviewed all changes and I approve them [X] attach debdiff against the package in (old)stable [X] the issue is verified as fixed in unstable [ Changes ] See changelog all CVE are closed [ Other info ] security team and myself think it is a good idea to upload quickly, in order to not have a lot of CVE piled up. Debusine: https://debusine.debian.net/debian/developers/work-request/932300/
Hi Bastien, I believe this one should be CVE-2026-61867. Regards, Salvatore
Le mardi 21 juillet 2026, 21:22:30 heure d’été d’Europe centrale Salvatore Bonaccorso a écrit : Yes fixed thank
Hi, This is unusually large but it's well organised enough that I can read it. Please go ahead with fixed CVE ref and target trixie. Thanks,
Hi I have upload to PU rouca
package release.debian.org tags 1142554 = trixie pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie. Thanks for your contribution! Upload details ============== Package: imagemagick Version: 7.1.1.43+dfsg1-1+deb13u12 Explanation: fix buffer overflow isses [CVE-2026-56362 CVE-2026-56372 CVE-2026-56374 CVE-2026-61464]; fix memory leak issues [CVE-2026-56366 CVE-2026-56375 CVE-2026-61863 CVE-2026-61864 CVE-2026-61865 CVE-2026-61866 CVE-2026-61867 CVE-2026-61868 CVE-2026-61869 CVE-2026-61870 CVE-2026-61871 CVE-2026-61872]; fix use-after-free issues [CVE-2026-56373 CVE-2026-61857 CVE-2026-61860 CVE-2026-61861]; fix denial of service issue [CVE-2026-61465]; fix policy bypass issues [CVE-2026-61858 CVE-2026-61859]; fix information disclosure issue [CVE-2026-61862]
package release.debian.org tags 1142554 = trixie pending thanks Hi, The upload referenced by this bug report has been flagged for acceptance into the proposed-updates queue for Debian trixie. Thanks for your contribution! Upload details ============== Package: imagemagick Version: 7.1.1.43+dfsg1-1+deb13u12 Explanation: fix buffer overflow isses [CVE-2026-56362 CVE-2026-56372 CVE-2026-56374 CVE-2026-61464]; fix memory leak issues [CVE-2026-56366 CVE-2026-56375 CVE-2026-61863 CVE-2026-61864 CVE-2026-61865 CVE-2026-61866 CVE-2026-61867 CVE-2026-61868 CVE-2026-61869 CVE-2026-61870 CVE-2026-61871 CVE-2026-61872]; fix use-after-free issues [CVE-2026-56373 CVE-2026-61857 CVE-2026-61860 CVE-2026-61861]; fix denial of service issue [CVE-2026-61465]; fix policy bypass issues [CVE-2026-61858 CVE-2026-61859]; fix information disclosure issue [CVE-2026-61862]
This update was released as part of 13.7.