[SECURITY] [DLA 4433-1] ruby-rmagick security update
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
- -----------------------------------------------------------------------
Debian LTS Advisory DLA-4433-1 debian-lts@lists.debian.org
https://www.debian.org/lts/security/ Utkarsh Gupta
January 05, 2026 https://wiki.debian.org/LTS
- -----------------------------------------------------------------------
Package : ruby-rmagick
Version : 2.16.0-7+deb11u1
CVE ID : CVE-2023-5349
A memory leak flaw was found in ruby-magick, an interface between Ruby
and ImageMagick. This issue can lead to a denial of service (DOS) by
memory exhaustion.
For Debian 11 bullseye, this problem has been fixed in version
2.16.0-7+deb11u1.
We recommend that you upgrade your ruby-rmagick packages.
For the detailed security status of ruby-rmagick please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/ruby-rmagick
Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----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=pEGF
-----END PGP SIGNATURE-----
Reply to: