imagemagick 8:6.9.7.4+dfsg-14 source package in Debian

Changelog

imagemagick (8:6.9.7.4+dfsg-14) unstable; urgency=high

  * Security bugs:
    + assertion failed in DestroyImageInfo
      A assertion failed in DestroyImageInfo, leading to DOS
      (Closes: 870014)
    + CVE-2017-11523: endless loop in ReadTXTImage
      If text image file only contains "MagickID..." line,
      it will cause ReadTXTImage to infinite loop.
      (Closes: #869210).
    + Memory leak in mat coder
      Fix a memory leak in mat coder triggered by a special crafted file
      (Closes: #870013).
    + Use of uninitialized data in ImageMagick/coders/mat.c
      The coder accesses uninitialized data
      which might pose a security issue or at least a bug. The first
      undefined access happens within coders/mat.c:1196 in a call to
      calcMinMax(). The back part of the buffer bImgBuff is now large enough
      but does seemingly not contain any sensible data.
      (Closes: #870012)
    + CVE-2017-11644
      A special crafted file create a memory leak in MAT file coder.
      The code need to free two buffer in some exceptionnal
      circonstances, instead than just one is freed
      (Closes: #870016)
    + Memory leak in mat coder
      A special crafted file create a memory leak in MAT coder
      (Closes: #870015)
    + Memory leak in mat coder
      In case of corrupted file, cloned image (temporarly image) should be freed
      (Closes: #870017)
    + assertion failed in DestroyImageInfo due to mat coder
      (Closes: #870019)
    + assertion failed in DestroyImage due to mat coder
      (Closes: #870020)
    + Memory leak in mat coder (upstream 617)
      (Closes: #870021)
    + Memory leak in mat coder (upstream 616)
      (Closes: #870022)
    + Memory leak in mat coder (upstream 616)
      (Closes: #870023)

 -- Bastien Roucariès <email address hidden>  Sat, 29 Jul 2017 00:51:39 +0200

Upload details

Uploaded by:
ImageMagick Packaging Team
Uploaded to:
Sid
Original maintainer:
ImageMagick Packaging Team
Architectures:
any all
Section:
graphics
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
imagemagick_6.9.7.4+dfsg-14.dsc 5.0 KiB 14c3d43d4f5d7e2ab48eeaa17ce0b1f6101e41c865d21ff67d97eccff466b343
imagemagick_6.9.7.4+dfsg.orig.tar.xz 8.5 MiB 47fb2cdd26f5913318c4504f16ea363e04d1f400dda9ec52e461ab661d724026
imagemagick_6.9.7.4+dfsg-14.debian.tar.xz 238.1 KiB 782073edb3619f224ced0cd0996b94ce8ee89d1440cac296de034163223949f4

No changes file available.

Binary packages built by this source