Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Rootio Imagemagick: Unauthorized Code Execution Through Image Files

ROOT-OS-DEBIAN-12-CVE-2026-25971
Summary

A security issue was found in the Rootio Imagemagick package on Debian 12. If exploited, it could allow an attacker to run unauthorized code on your system. This has been fixed by Root, and you should update to the latest version to stay secure.

What to do
  • Update rootio-imagemagick to version 8:6.9.11.60+dfsg-1.6+deb12u7.root.io.38.
  • Update rootio-imagemagick to version 8:6.9.11.60+dfsg-1.6+deb12u7.root.io.41.
  • Update rootio-imagemagick to version 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.43.
  • Update rootio-imagemagick to version 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.44.
  • Update rootio-imagemagick to version 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.45.
Affected software
Ecosystem VendorProductAffected versions
Root:Debian:12 – rootio-imagemagick < 8:6.9.11.60+dfsg-1.6+deb12u7.root.io.38
< 8:6.9.11.60+dfsg-1.6+deb12u7.root.io.41
< 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.43
< 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.44
< 8:6.9.11.60+dfsg-1.6+deb12u8.root.io.45
Fix: upgrade to 8:6.9.11.60+dfsg-1.6+deb12u7.root.io.38
Original title
CVE-2026-25971 in rootio-imagemagick - Patched by Root
Original description
Root has patched CVE-2026-25971 in the rootio-imagemagick package for Root:Debian:12. Multiple fixed versions available.
Published: 17 Apr 2026 · Updated: 17 Apr 2026 · First seen: 17 Mar 2026