imagemagick 8:6.8.9.9-5+deb8u12 source package in Debian

Changelog

imagemagick (8:6.8.9.9-5+deb8u12) jessie-security; urgency=high

  * Non-maintainer upload.
  * Fix the following security vulnerabilities:
    - CVE-2017-10995: heap-based buffer over-read and application crash via a
      crafted MNG image. (Closes: #867748)
    - CVE-2017-11533: heap-based buffer over-read in the WriteUILImage()
      function in coders/uil.c. (Closes: #869834)
    - CVE-2017-11535: heap-based buffer over-read in the WritePSImage()
      function in coders/ps.c. (Closes: #869827)
    - CVE-2017-11639: heap-based buffer over-read in the WriteCIPImage()
      function in coders/cip.c. (Closes: #870065)
    - CVE-2017-13143: ReadMATImage function in coders/mat.c uses uninitialized
      data, which might allow remote attackers to obtain sensitive information
      from process memory. (Closes: #870012)
    - CVE-2017-17504: heap-based buffer over-read. (Closes: #885340)
    - CVE-2017-17879: heap-based buffer over-read in ReadOneMNGImage
      in coders/png.c. (Closes: #885125)
    - CVE-2018-5248: heap-based buffer over-read in coders/sixel.c
      in the ReadSIXELImage function. (Closes: #886588)

 -- Markus Koschany <email address hidden>  Sun, 06 May 2018 18:28:48 +0200

Upload details

Uploaded by:
ImageMagick Packaging Team
Uploaded to:
Jessie
Original maintainer:
ImageMagick Packaging Team
Architectures:
any all
Section:
graphics
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section
Jessie release main graphics

Builds

Downloads

File Size SHA-256 Checksum
imagemagick_6.8.9.9-5+deb8u12.dsc 3.8 KiB 38f76f398784f7540a20b8bc44c84fa1fb47391518d4a7f192575f4a1dc7f852
imagemagick_6.8.9.9.orig.tar.xz 7.5 MiB a4cccc70179ff2c67550e063cdcb2e62907338ef3e68b45bb1c41931e515b3eb
imagemagick_6.8.9.9-5+deb8u12.debian.tar.xz 290.2 KiB 4373d71c5c3b45f598bbec094bd00320070144113a26a458abed09ae40aa7ce8

No changes file available.

Binary packages built by this source