Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:6713 - Security Advisory
Issued:
2026-04-06
Updated:
2026-04-06

RHSA-2026:6713 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: ImageMagick security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for ImageMagick is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

ImageMagick is an image display and manipulation tool for the X Window System that can read and write multiple image formats.

Security Fix(es):

  • ImageMagick: ImageMagick: Out-of-bounds read or write due to integer overflow in DIB coder (CVE-2026-28693)
  • ImageMagick: ImageMagick: Denial of Service via uninitialized pointer dereference in JBIG decoder (CVE-2026-28691)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 2445888 - CVE-2026-28693 ImageMagick: ImageMagick: Out-of-bounds read or write due to integer overflow in DIB coder
  • BZ - 2445902 - CVE-2026-28691 ImageMagick: ImageMagick: Denial of Service via uninitialized pointer dereference in JBIG decoder

CVEs

  • CVE-2026-28691
  • CVE-2026-28693

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
ImageMagick-6.9.10.68-15.el7_9.src.rpm SHA-256: e411d9acb3335b75642c86b6ac4552507484803c19ff60e862478c42fb019afa
x86_64
ImageMagick-6.9.10.68-15.el7_9.i686.rpm SHA-256: 0b467afbd26b563accae807dfeb0ab0e7ca6c206daf581d57048163e1f74f629
ImageMagick-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: 782ac71d106bf84d5bd20eb08e2d5ddda04bb40a15a7565723813cb459bf116f
ImageMagick-c++-6.9.10.68-15.el7_9.i686.rpm SHA-256: ef7421639f7b6ec882f79ba2b628336f319fe105a882b2f3ae4d4d339d7f1ac2
ImageMagick-c++-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: dc8939379c337f1e3b50fd62097ba804e3a3c553803f365de93e05cec86aa26d
ImageMagick-c++-devel-6.9.10.68-15.el7_9.i686.rpm SHA-256: a9b9417a3c2767fc0d51802622b553e89ffe8fe1b5e4bbcf728ea5f75c7159fa
ImageMagick-c++-devel-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: 680f9805163088020c2c04df8e7b87d2ca10ec18bb93f1e1196d8bde8ca52f08
ImageMagick-debuginfo-6.9.10.68-15.el7_9.i686.rpm SHA-256: 972c54c6137dbe0b1b77bf8a30649b25674220d264955cc9e5ce1d282b245889
ImageMagick-debuginfo-6.9.10.68-15.el7_9.i686.rpm SHA-256: 972c54c6137dbe0b1b77bf8a30649b25674220d264955cc9e5ce1d282b245889
ImageMagick-debuginfo-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: e8f063f78d428126f6ea1f0b9e9a5bb0d8defd63cc7a77d5e21badcc2a986a2d
ImageMagick-debuginfo-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: e8f063f78d428126f6ea1f0b9e9a5bb0d8defd63cc7a77d5e21badcc2a986a2d
ImageMagick-devel-6.9.10.68-15.el7_9.i686.rpm SHA-256: 5bf0b4848cab47d615ee880df89d562c264f0d04fc80011c1d5c2b59852acd02
ImageMagick-devel-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: d98e73025c62a42b6a9e76d3a14da0035ab95905f7becdaa71696ec2861cfb20
ImageMagick-doc-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: 3ba9518d1e3b48d642ecc7b88ef3e10f941ba23802a445068f343cb9b8a35b2c
ImageMagick-perl-6.9.10.68-15.el7_9.x86_64.rpm SHA-256: 9d2bef560bdef06535e48734e1bf4a616890a28b08c6568b7e36a37ae835d198

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
ImageMagick-6.9.10.68-15.el7_9.src.rpm SHA-256: e411d9acb3335b75642c86b6ac4552507484803c19ff60e862478c42fb019afa
s390x
ImageMagick-6.9.10.68-15.el7_9.s390.rpm SHA-256: 5edce588e6966c6a3c2bf560d7ec03a6d7d12f884139786017267c427e2307f3
ImageMagick-6.9.10.68-15.el7_9.s390x.rpm SHA-256: 7825e2401d900bf4e713902390ee04a415cf6881e272a1dd88e1279c8b546094
ImageMagick-c++-6.9.10.68-15.el7_9.s390.rpm SHA-256: 38c3d32431eae54292273b93cbbf61217fece27fac6d6c9d50585b59b8b6fdf8
ImageMagick-c++-6.9.10.68-15.el7_9.s390x.rpm SHA-256: f1becb03a441c01e32871906ff9928784a9fbedfba9af606d442f294b5dfbb1f
ImageMagick-c++-devel-6.9.10.68-15.el7_9.s390.rpm SHA-256: 902a97f87b726b1b35e94d419f4fea63a13893ad6465be27cc3d68d9b7bbdf60
ImageMagick-c++-devel-6.9.10.68-15.el7_9.s390x.rpm SHA-256: 5975d601d95941d1ac4ecd931b45395dde13032a42db5eb09daa8d85f17a3285
ImageMagick-debuginfo-6.9.10.68-15.el7_9.s390.rpm SHA-256: 2342c84e8a3e1748d11da7c3a72a0b02203903bd6a04e9f4c7de04967c5c2fb2
ImageMagick-debuginfo-6.9.10.68-15.el7_9.s390.rpm SHA-256: 2342c84e8a3e1748d11da7c3a72a0b02203903bd6a04e9f4c7de04967c5c2fb2
ImageMagick-debuginfo-6.9.10.68-15.el7_9.s390x.rpm SHA-256: a4959110b3b93630ac65f39f7e946459e8f53c95a43de775513b9622f2742dc6
ImageMagick-debuginfo-6.9.10.68-15.el7_9.s390x.rpm SHA-256: a4959110b3b93630ac65f39f7e946459e8f53c95a43de775513b9622f2742dc6
ImageMagick-devel-6.9.10.68-15.el7_9.s390.rpm SHA-256: eeb1a7b710c653a80214b988ac16aa0218d49ca78a366d72d133f4152c1e2ddf
ImageMagick-devel-6.9.10.68-15.el7_9.s390x.rpm SHA-256: a8bf47ea8dd33cf221a3f389d22f9ca420f2ce80e56a057e9b408eeb3f8c0e3d
ImageMagick-doc-6.9.10.68-15.el7_9.s390x.rpm SHA-256: 4af523051e16f51c6f83d772fe909d64898fc27e1790cf56335058c6e05a401b
ImageMagick-perl-6.9.10.68-15.el7_9.s390x.rpm SHA-256: dc9e11baea23f12e9eb81de2dd058c91676fd7591ab3d775af8483d7cf48134c

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
ImageMagick-6.9.10.68-15.el7_9.src.rpm SHA-256: e411d9acb3335b75642c86b6ac4552507484803c19ff60e862478c42fb019afa
ppc64
ImageMagick-6.9.10.68-15.el7_9.ppc.rpm SHA-256: 3ac414c374a673cccafe6841f0057bb4777ccdb532f0bf4cfc9c6c577c57b1b8
ImageMagick-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: 693dfa449ed0c5d59fd7cb320f8a2d63cc91cd614a9fa5a38b6ef99b6a99bc1e
ImageMagick-c++-6.9.10.68-15.el7_9.ppc.rpm SHA-256: 1b16d515fd2e41da44476c458f14d334e73c08d987a3bfa5755145dad6f0b517
ImageMagick-c++-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: bf66175757c1caa4a2d90620dcc66d237c0af150b45dd20a56157ea1f8f83eed
ImageMagick-c++-devel-6.9.10.68-15.el7_9.ppc.rpm SHA-256: c2633e4ade644e3ecdf143c686fbc2a1834e73821afc8558151dbeb0784ed8e2
ImageMagick-c++-devel-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: 5625712b112ab439185e30ed0b2063246117df6950b755ebaf5c6e6fe9093582
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc.rpm SHA-256: b310ff00a90ab7765eb2c279c8187429e69f938c2bfdcd4bf439fa224a13b956
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc.rpm SHA-256: b310ff00a90ab7765eb2c279c8187429e69f938c2bfdcd4bf439fa224a13b956
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: c040f8c5d3cffd179820719e4da39785b1d805c57e1df4203510e6532607d66c
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: c040f8c5d3cffd179820719e4da39785b1d805c57e1df4203510e6532607d66c
ImageMagick-devel-6.9.10.68-15.el7_9.ppc.rpm SHA-256: 4f5a8c8a64e9eb4ba87580100986e6fd770a2351463dde1c344a5d5747849322
ImageMagick-devel-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: ef9594111873599e904f659284473c336b87e28f33308eeaf60f2874ae08feba
ImageMagick-doc-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: 6e72d7800ae418714348f038d8bd701c216d0b286b9d608aeb4becaff9b6457d
ImageMagick-perl-6.9.10.68-15.el7_9.ppc64.rpm SHA-256: ceb454262d55878ae91eb9f21973443ed13f8111222b74e154210c061a511b51

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
ImageMagick-6.9.10.68-15.el7_9.src.rpm SHA-256: e411d9acb3335b75642c86b6ac4552507484803c19ff60e862478c42fb019afa
ppc64le
ImageMagick-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: adb227154e53763bf9425447740f4cf83c5fa16ddde7a894bb97b5bae2cfdc07
ImageMagick-c++-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: 8542aa0d628180669c366855abfc87ca1afb988893e0d139c39f5fcd51e52cc5
ImageMagick-c++-devel-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: aa212605645f0adb652ab7177cfeed4b1e7b05d540053b3f2e60e1441cab2e2f
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: 4cb71749efb3a30e5f6a3e12d2db0aca11e6bd61b0773dbc05dc8ee3607cec5c
ImageMagick-debuginfo-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: 4cb71749efb3a30e5f6a3e12d2db0aca11e6bd61b0773dbc05dc8ee3607cec5c
ImageMagick-devel-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: e975afe2b25c43067b2174f5b4f26f76bd65319ab8a6ebc35bd0ab16171cf0c5
ImageMagick-doc-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: e0759805458cd7c79477ec347f25c52896492b82f6036485a607fcadfca3e157
ImageMagick-perl-6.9.10.68-15.el7_9.ppc64le.rpm SHA-256: 9bc7594cde5979fb55551a97a0148043fa1f0e1119e8e1a2b44f17da93e2db8e

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility