imagemagick 6:6.2.4.5-0.6ubuntu0.7 source package in Ubuntu

Changelog

imagemagick (6:6.2.4.5-0.6ubuntu0.7) dapper-security; urgency=low

  * SECURITY UPDATE: multiple heap overflow vulnerabilities could lead
    to remote code execution.
  * Thanks to Jonathan Smith and Daniel Kobras for backported patches:
    - magick/memory.c,magick/memory_.h,magick/methods.h: Add new allocator
      wrapper AcquireQuantumMemory() to prevent potential integer overflows.
      Backport from upstream version 6.3.5.9.
    - magick/image.c: Backport new implementation of SetImageExtent() from
      upstream version 6.3.5.9.
    - coders/dcm.c,coders/xcf.c: Fix integer overflow in DCM and XCF coders.
      (CVE-2007-4985) Backport of upstream patch from version 6.3.5.9.
    - coders/dcm.c,coders/dib.c,coders/xbm.c,coders/xcf.c,coders/xwd.c:
      Fix multiple integer overflows in DCM, DIB, XBM, XCF, and XWD coders.
      (CVE-2007-4986 and CVE-2007-4988) Based on upstream patch from
      version 6.3.5.9.
    - magick/blob.c: Fix fencepost error in ReadBlobString()
      (CVE-2007-4987) Backport of upstream patch from version 6.3.5.9.
    - coders/dib.c: Ensure positive value for image rows and columns.
      Based on upstream patch from version 6.3.5.9.

 -- Kees Cook <email address hidden>   Tue, 02 Oct 2007 14:19:08 -0700

Upload details

Uploaded by:
Kees Cook
Uploaded to:
Dapper
Original maintainer:
Ryuichi Arafune
Architectures:
any
Section:
graphics
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
imagemagick_6.2.4.5.orig.tar.gz 5.8 MiB ea6269d9d9ddb1877b1dd1d025e287b746d6d6ce09018c55a949740ba8dd1c67
imagemagick_6.2.4.5-0.6ubuntu0.7.diff.gz 41.2 KiB 64c20e6af898f0f3de808fd39aed0582e3455e66ad5c70d1631dea0921aab46e
imagemagick_6.2.4.5-0.6ubuntu0.7.dsc 914 bytes 95991dfe8029342c96ef28a490ef9aaf862fbd291d90668dcb3ed178bbed501e

View changes file

Binary packages built by this source

imagemagick: No summary available for imagemagick in ubuntu dapper.

No description available for imagemagick in ubuntu dapper.

libmagick++9-dev: No summary available for libmagick++9-dev in ubuntu dapper.

No description available for libmagick++9-dev in ubuntu dapper.

libmagick++9c2a: No summary available for libmagick++9c2a in ubuntu dapper.

No description available for libmagick++9c2a in ubuntu dapper.

libmagick9: No summary available for libmagick9 in ubuntu dapper.

No description available for libmagick9 in ubuntu dapper.

libmagick9-dev: No summary available for libmagick9-dev in ubuntu dapper.

No description available for libmagick9-dev in ubuntu dapper.

perlmagick: No summary available for perlmagick in ubuntu dapper.

No description available for perlmagick in ubuntu dapper.