Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:5573 - Security Advisory
Issued:
2026-03-24
Updated:
2026-03-24

RHSA-2026:5573 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ImageMagick security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ImageMagick is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

ImageMagick is an image display and manipulation tool for the X Window System that can read and write multiple image formats.

Security Fix(es):

  • ImageMagick: ImageMagick: Local File Disclosure via Path Traversal (CVE-2026-25965)
  • ImageMagick: Memory allocation with excessive without limits in the internal SVG decoder (CVE-2026-25985)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 2442118 - CVE-2026-25965 ImageMagick: ImageMagick: Local File Disclosure via Path Traversal
  • BZ - 2442127 - CVE-2026-25985 ImageMagick: Memory allocation with excessive without limits in the internal SVG decoder

CVEs

  • CVE-2026-25965
  • CVE-2026-25985

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
ImageMagick-6.9.10.68-13.el7_9.src.rpm SHA-256: 31681decf99b9e21eeb2354aea2e2ab84039c58c3e67850b12c491fe32e46e00
x86_64
ImageMagick-6.9.10.68-13.el7_9.i686.rpm SHA-256: ad29fbb1d8b5aa48117c715b19a1cf545b25161538e1a16dba552f0e04c7609b
ImageMagick-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: c499a537cd48274ad022791ea0c9acc5027e192d15f23b0e9cafb7f6bdd3ae6c
ImageMagick-c++-6.9.10.68-13.el7_9.i686.rpm SHA-256: fa8ef5b781886dea45da9accbe9e8537530eeb76829bd6717396f716ade59204
ImageMagick-c++-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 2163a667cb40ca84ce4dcf041cb315b84f7e21145df00325e37b3618483f9073
ImageMagick-c++-devel-6.9.10.68-13.el7_9.i686.rpm SHA-256: 5b71bd53e5286492f20cd2895af63939f24aec5591fe21ebc4adf8c57ef01734
ImageMagick-c++-devel-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 4c000a9c9490174784bf7d149b9212b8db83cb3e460c89820a9d51f1ab0a23ea
ImageMagick-debuginfo-6.9.10.68-13.el7_9.i686.rpm SHA-256: a52448944b9973883dbf73461683c9596b84be0864d30cf97a422c294f15e9fc
ImageMagick-debuginfo-6.9.10.68-13.el7_9.i686.rpm SHA-256: a52448944b9973883dbf73461683c9596b84be0864d30cf97a422c294f15e9fc
ImageMagick-debuginfo-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 7972e7aea21c8cf731e96c4261206fcbb5ae0a1e204826963fda1b89adb63281
ImageMagick-debuginfo-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 7972e7aea21c8cf731e96c4261206fcbb5ae0a1e204826963fda1b89adb63281
ImageMagick-devel-6.9.10.68-13.el7_9.i686.rpm SHA-256: 38f8f937f8a3059e57ec7fcebabe223c65c274c51b7116b72bff8f9136ec84e4
ImageMagick-devel-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 88e8309ee9d3eb51cad141e52d1c13b036e0d480fd4632be1787f7831ec50faf
ImageMagick-doc-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 0e8fb543941e081552564e921541afe07a0b0eab3d5433a9f9215dee59711648
ImageMagick-perl-6.9.10.68-13.el7_9.x86_64.rpm SHA-256: 02025d85e5574a07d3de2f1bce0b0901a48ddc313ab028f07821c3d0d1aefb51

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
ImageMagick-6.9.10.68-13.el7_9.src.rpm SHA-256: 31681decf99b9e21eeb2354aea2e2ab84039c58c3e67850b12c491fe32e46e00
s390x
ImageMagick-6.9.10.68-13.el7_9.s390.rpm SHA-256: fa2ff001c1463caffde97e935ee15163f85b3fb4750ec00d1a27db9c17504236
ImageMagick-6.9.10.68-13.el7_9.s390x.rpm SHA-256: 761d0bc7881ccfadd12164d640626df092b3c9ae0d1485b755b7aab8ac24b354
ImageMagick-c++-6.9.10.68-13.el7_9.s390.rpm SHA-256: b5a25a3018e414e4bfe26f8ca5f376d2bc137daf7b7cf4d17be6e5a9b8360dc1
ImageMagick-c++-6.9.10.68-13.el7_9.s390x.rpm SHA-256: 6ff491c424fc86a7bbb84b58f6f085c5e712250a1b774e37ab1faaef94119258
ImageMagick-c++-devel-6.9.10.68-13.el7_9.s390.rpm SHA-256: 0102b5cf419d0857c7085dfc3cf04e2ee50e312f8ecfa5a2d92fe2b98563ab0b
ImageMagick-c++-devel-6.9.10.68-13.el7_9.s390x.rpm SHA-256: a43ddc7ef42d12cfcac4a8695f5c91215bce3ec236b4fdebb411746418bac91a
ImageMagick-debuginfo-6.9.10.68-13.el7_9.s390.rpm SHA-256: c0f7caca1615eaf49d5e2f587d0c588c378b933a90f3816a7f73060311f6d83b
ImageMagick-debuginfo-6.9.10.68-13.el7_9.s390.rpm SHA-256: c0f7caca1615eaf49d5e2f587d0c588c378b933a90f3816a7f73060311f6d83b
ImageMagick-debuginfo-6.9.10.68-13.el7_9.s390x.rpm SHA-256: c84ec5a1deb2052d5052a2c48cf6c7204ccc6c0a4a44da75767437f8b730ec38
ImageMagick-debuginfo-6.9.10.68-13.el7_9.s390x.rpm SHA-256: c84ec5a1deb2052d5052a2c48cf6c7204ccc6c0a4a44da75767437f8b730ec38
ImageMagick-devel-6.9.10.68-13.el7_9.s390.rpm SHA-256: cbf04fb1e4cbb2de7f1176d7ede9dbcddce2dedd3a6eb3c157d7c5523092cf3a
ImageMagick-devel-6.9.10.68-13.el7_9.s390x.rpm SHA-256: a5be91600aebd3cae9252bd79c56bfb81ec2cf30763474a3ed1cfd76d2b0bed0
ImageMagick-doc-6.9.10.68-13.el7_9.s390x.rpm SHA-256: 19b8c3a33cb7bc9ff82163e66f70cb31be246df4296d0d6e3b896679741aedb5
ImageMagick-perl-6.9.10.68-13.el7_9.s390x.rpm SHA-256: b8c33589853ea98048aca4a2d9552c3300d795e1eb7f00c7022d2d0023e8f597

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
ImageMagick-6.9.10.68-13.el7_9.src.rpm SHA-256: 31681decf99b9e21eeb2354aea2e2ab84039c58c3e67850b12c491fe32e46e00
ppc64
ImageMagick-6.9.10.68-13.el7_9.ppc.rpm SHA-256: 1b24120f1fcdaa73347c846e178fd5c1f534933bf75bb3e316467ad1c7795e35
ImageMagick-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: bbbef0f7c4f5a1385417780851e236d4a7169b0f40421389470d4b44d032bf62
ImageMagick-c++-6.9.10.68-13.el7_9.ppc.rpm SHA-256: a891f0df3d2858d3372eb759f0d1bcfbe73ece5739c1934733acb750d0a47ce3
ImageMagick-c++-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: a5512c342a88d6abd62a83c6b7b25dc08ea0ce33b57db23fec780eed3cfa2559
ImageMagick-c++-devel-6.9.10.68-13.el7_9.ppc.rpm SHA-256: 48add0fe0cbe9fd638b94887e26297aebb9e456932f08293ff9e52bd796c66e4
ImageMagick-c++-devel-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 7bfaec46d5be310da858f7c5cd205d884c06230a58a96028d9f0cf807dca6874
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc.rpm SHA-256: 39134cb2e15cf9c09fccff324ba190e6cb1793ffec918f8a8da4621609b4cf4f
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc.rpm SHA-256: 39134cb2e15cf9c09fccff324ba190e6cb1793ffec918f8a8da4621609b4cf4f
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 20b0423b2727d49993f4d8bf9e14277123467997bdc85fcd905d2877098f9e38
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 20b0423b2727d49993f4d8bf9e14277123467997bdc85fcd905d2877098f9e38
ImageMagick-devel-6.9.10.68-13.el7_9.ppc.rpm SHA-256: ae9e5c3af4225e1bf6ca95ef023481a3b9e9961409a366385893edaef35d3f55
ImageMagick-devel-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 85bdace1f91dc839e9b6f51d6b1865db1b55e6411fced2bdb6abfff7ca0e18e4
ImageMagick-doc-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 96fd6020fc0e848687cfb77d486a44349269a6736cb2f439ac5bf5672cfe97f8
ImageMagick-perl-6.9.10.68-13.el7_9.ppc64.rpm SHA-256: 0285ba9deb8ae1256e23ec2fb4dbae53d0d97dc2c7f9c6ed4bd7e21823b52463

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
ImageMagick-6.9.10.68-13.el7_9.src.rpm SHA-256: 31681decf99b9e21eeb2354aea2e2ab84039c58c3e67850b12c491fe32e46e00
ppc64le
ImageMagick-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: 36998230c07bc8eb80dbb1f27958edc9c0d4245673af078158e220ad0b8ddc7f
ImageMagick-c++-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: 22141a3324fad551c9861d32876712b69b16304ce875f557f5d0bf6b708c5005
ImageMagick-c++-devel-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: 0e62b2cf11321c81b879d3f17d87b8d4a43cc7650b0213130245775dc837aa30
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: c9d83e709784eda7c91fb78389f08c04be0c3f12dd7428dc00f75ce2895df6cb
ImageMagick-debuginfo-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: c9d83e709784eda7c91fb78389f08c04be0c3f12dd7428dc00f75ce2895df6cb
ImageMagick-devel-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: 41e0fe233b3e7be6a1566af0c43efe300c24526378d107b3e75e7368143fc97f
ImageMagick-doc-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: 4d8b21b6e03474e711445c75a58570e58b4d393186a1b16b5af603333baf5334
ImageMagick-perl-6.9.10.68-13.el7_9.ppc64le.rpm SHA-256: cd03e3541a20b1e2726e6a24d9a94a6596bf2505f88041ce9dee36ecfc877362

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility