Bug#833485: CVE-2016-6520: imagemagick: buffer overflow

2016-08-08 Thread Bastien ROUCARIES
control: fixed -1 8:6.8.9.9-7.2 according to http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=30259&p=136359#p136359 it is not for us This is a ImageMagick 7 specific patch. We allocate the buffers based on the number of image pixel channels, however, the method was not returning

Bug#833485: CVE-2016-6520: imagemagick: buffer overflow

2016-08-04 Thread Henri Salo
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Package: imagemagick Version: 8:6.8.9.9-7.2 Severity: important Tags: security, upstream, fixed-upstream A buffer overflow vulnerability has been fixed by following commit: https://github.com/ImageMagick/ImageMagick/commit/76401e172ea3a55182be2b8e2ac