MGASA-2018-0285

Source
https://advisories.mageia.org/MGASA-2018-0285.html
Import Source
https://advisories.mageia.org/MGASA-2018-0285.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2018-0285
Related
Published
2018-06-16T09:28:36Z
Modified
2018-06-16T09:11:14Z
Summary
Updated imagemagick packages fix security vulnerability
Details

Imagemagick has been updated to version 6.9.10.0 to fix several bugs and possible security issues.

  • Fixed numerous use of uninitialized values, integer overflow, memory exceeded, and timeouts
  • Missing break when checking "compliance" element.
  • Fixed errant 'not enough pixel data'
  • Fixed memory corruption for MVG paths
  • A SVG rectangle with a width and height of 1, is a point
  • Properly initialize SVG color style
  • Heap buffer overflow fix
References
Credits

Affected packages

Mageia:6 / imagemagick

Package

Name
imagemagick
Purl
pkg:rpm/mageia/imagemagick?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.9.10.0-1.mga6

Ecosystem specific

{
    "section": "core"
}