Bug 2421113 - Request to update ImageMagick for RHEL 9 to 6.9.13-32 or higher
Summary: Request to update ImageMagick for RHEL 9 to 6.9.13-32 or higher
Keywords:
Status: NEW
Alias: None
Product: Fedora EPEL
Classification: Fedora
Component: ImageMagick
Version: epel9
Hardware: x86_64
OS: Linux
unspecified
high
Target Milestone: ---
Assignee: Luya Tshimbalanga
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2025-12-10 21:21 UTC by Malson Luo
Modified: 2025-12-10 21:21 UTC (History)
8 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Type: Bug
Embargoed:


Attachments (Terms of Use)

Description Malson Luo 2025-12-10 21:21:08 UTC
Below is Tenable Nessus scan result for current version of ImageMagick (6.9.13-25) for RHEL9

Vulnerability Details:

Plugin ID: 276810	
Plugin Name: ImageMagick < 6.9.13-32 / 7.0 < 7.1.2-7 Integer Overflow (GGHSA-9pp9-cfwx-54rm)	
Severity: High


Tenable Plugin Output:

Path              : /
  Installed version : 6.9.13-25
  Fixed version     : 6.9.13-32


there are also some other CVE concerns. see

https://www.cvedetails.com/vulnerability-list/vendor_id-1749/Imagemagick.html

please help to update it to 6.9.13-35. thank you

the RPMs from legacy.Imagemagick.org require higher version of libraries, they are not desired.


Note You need to log in before you can comment on or make changes to this bug.