imagemagick 6:6.2.4.5-0.6ubuntu0.7 source package in Ubuntu
Changelog
imagemagick (6:6.2.4.5-0.6ubuntu0.7) dapper-security; urgency=low * SECURITY UPDATE: multiple heap overflow vulnerabilities could lead to remote code execution. * Thanks to Jonathan Smith and Daniel Kobras for backported patches: - magick/memory.c,magick/memory_.h,magick/methods.h: Add new allocator wrapper AcquireQuantumMemory() to prevent potential integer overflows. Backport from upstream version 6.3.5.9. - magick/image.c: Backport new implementation of SetImageExtent() from upstream version 6.3.5.9. - coders/dcm.c,coders/xcf.c: Fix integer overflow in DCM and XCF coders. (CVE-2007-4985) Backport of upstream patch from version 6.3.5.9. - coders/dcm.c,coders/dib.c,coders/xbm.c,coders/xcf.c,coders/xwd.c: Fix multiple integer overflows in DCM, DIB, XBM, XCF, and XWD coders. (CVE-2007-4986 and CVE-2007-4988) Based on upstream patch from version 6.3.5.9. - magick/blob.c: Fix fencepost error in ReadBlobString() (CVE-2007-4987) Backport of upstream patch from version 6.3.5.9. - coders/dib.c: Ensure positive value for image rows and columns. Based on upstream patch from version 6.3.5.9. -- Kees Cook <email address hidden> Tue, 02 Oct 2007 14:19:08 -0700
Upload details
- Uploaded by:
- Kees Cook
- Uploaded to:
- Dapper
- Original maintainer:
- Ryuichi Arafune
- Architectures:
- any
- Section:
- graphics
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
imagemagick_6.2.4.5.orig.tar.gz | 5.8 MiB | ea6269d9d9ddb1877b1dd1d025e287b746d6d6ce09018c55a949740ba8dd1c67 |
imagemagick_6.2.4.5-0.6ubuntu0.7.diff.gz | 41.2 KiB | 64c20e6af898f0f3de808fd39aed0582e3455e66ad5c70d1631dea0921aab46e |
imagemagick_6.2.4.5-0.6ubuntu0.7.dsc | 914 bytes | 95991dfe8029342c96ef28a490ef9aaf862fbd291d90668dcb3ed178bbed501e |
Binary packages built by this source
- imagemagick: No summary available for imagemagick in ubuntu dapper.
No description available for imagemagick in ubuntu dapper.
- libmagick++9-dev: No summary available for libmagick++9-dev in ubuntu dapper.
No description available for libmagick++9-dev in ubuntu dapper.
- libmagick++9c2a: No summary available for libmagick++9c2a in ubuntu dapper.
No description available for libmagick++9c2a in ubuntu dapper.
- libmagick9: No summary available for libmagick9 in ubuntu dapper.
No description available for libmagick9 in ubuntu dapper.
- libmagick9-dev: No summary available for libmagick9-dev in ubuntu dapper.
No description available for libmagick9-dev in ubuntu dapper.
- perlmagick: No summary available for perlmagick in ubuntu dapper.
No description available for perlmagick in ubuntu dapper.