Linuxsecurity
Critical ImageMagick Vulnerabilities Affect Multiple Ubuntu Versions
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Multiple vulnerabilities were discovered in ImageMagick, affecting Ubuntu versions 14.04 LTS through 24.04 LTS. The vulnerabilities include a stack overflow (CVE-2025-68950) and a use-after-free condition (CVE-2026-28688), both potentially leading to denial of service or arbitrary code execution. Additionally, CVE-2026-33900 involves an integer overflow that can cause out-of-bounds heap writes. These vulnerabilities were reported in July 2026, with the earliest CVE published in December 2025. Users are advised to update their systems to mitigate these risks. The vulnerabilities are particularly concerning due to their potential impact on a wide range of systems. The advisory emphasizes the importance of applying least privilege across Linux systems to reduce security risks.
Key Points: • ImageMagick vulnerabilities affect Ubuntu 14.04 LTS to 24.04 LTS. • CVE-2025-68950 and CVE-2026-28688 can lead to denial of service or arbitrary code execution. • Immediate system updates are recommended to mitigate these vulnerabilities.