ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick’s path security policy is enforced on the raw filename string before the filesystem resolves it. As a result, a policy rule such as /etc/* can be bypassed by a path traversal. The OS resolves the traversal and opens the sensitive file, but the policy matcher only sees the unnormalized path and therefore allows the read. This enables local file disclosure (LFI) even when policy-secure.xml is applied. Actions to prevent reading from files have been taken in versions .7.1.2-15 and 6.9.13-40 But it make sure writing is also not possible the following should be added to one's policy. This will also be included in ImageMagick's more secure policies by default.
{
"binaries": [
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "imagemagick"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "imagemagick-7-common"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "imagemagick-7.q16"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "imagemagick-7.q16hdri"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libimage-magick-q16hdri-perl"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagick++-7-headers"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagick++-7.q16-5"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagick++-7.q16hdri-5"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7-arch-config"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7-headers"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7.q16-10"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7.q16-10-extra"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7.q16hdri-10"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickcore-7.q16hdri-10-extra"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickwand-7-headers"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickwand-7.q16-10"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "libmagickwand-7.q16hdri-10"
},
{
"binary_version": "8:7.1.2.3+dfsg1-1ubuntu0.1",
"binary_name": "perlmagick"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "imagemagick-common"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "libmagick++5"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "libmagickcore5"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "libmagickcore5-extra"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "libmagickwand5"
},
{
"binary_version": "8:6.7.7.10-6ubuntu3.13+esm21",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro with Legacy support add-on: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "imagemagick-6.q16"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "imagemagick-common"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagick++-6-headers"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagick++-6.q16-5v5"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickcore-6-arch-config"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickcore-6-headers"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickcore-6.q16-2"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickcore-6.q16-2-extra"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickwand-6-headers"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "libmagickwand-6.q16-2"
},
{
"binary_version": "8:6.8.9.9-7ubuntu5.16+esm20",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "imagemagick-6-common"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "imagemagick-6.q16"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "imagemagick-6.q16hdri"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "imagemagick-common"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libimage-magick-q16hdri-perl"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagick++-6-headers"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagick++-6.q16-7"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagick++-6.q16hdri-7"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6-arch-config"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6-headers"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6.q16-3"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6.q16-3-extra"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6.q16hdri-3"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickcore-6.q16hdri-3-extra"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickwand-6-headers"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickwand-6.q16-3"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "libmagickwand-6.q16hdri-3"
},
{
"binary_version": "8:6.9.7.4+dfsg-16ubuntu6.15+esm12",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "imagemagick-6-common"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "imagemagick-6.q16"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "imagemagick-6.q16hdri"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "imagemagick-common"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libimage-magick-q16hdri-perl"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagick++-6-headers"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagick++-6.q16-8"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagick++-6.q16hdri-8"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6-arch-config"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6-headers"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6.q16-6"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6.q16-6-extra"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6.q16hdri-6"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickcore-6.q16hdri-6-extra"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickwand-6-headers"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickwand-6.q16-6"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "libmagickwand-6.q16hdri-6"
},
{
"binary_version": "8:6.9.10.23+dfsg-2.1ubuntu11.11+esm10",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "imagemagick-6-common"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "imagemagick-6.q16"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "imagemagick-6.q16hdri"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "imagemagick-common"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libimage-magick-q16hdri-perl"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagick++-6-headers"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagick++-6.q16-8"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagick++-6.q16hdri-8"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6-arch-config"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6-headers"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6.q16-6"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6.q16-6-extra"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6.q16hdri-6"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickcore-6.q16hdri-6-extra"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickwand-6-headers"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickwand-6.q16-6"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "libmagickwand-6.q16hdri-6"
},
{
"binary_version": "8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm10",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "imagemagick"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "imagemagick-6-common"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "imagemagick-6.q16"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "imagemagick-6.q16hdri"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libimage-magick-perl"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libimage-magick-q16-perl"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libimage-magick-q16hdri-perl"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagick++-6-headers"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagick++-6.q16-9t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagick++-6.q16hdri-9t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6-arch-config"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6-headers"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6.q16-7-extra"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6.q16-7t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6.q16hdri-7-extra"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickcore-6.q16hdri-7t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickwand-6-headers"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickwand-6.q16-7t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "libmagickwand-6.q16hdri-7t64"
},
{
"binary_version": "8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm9",
"binary_name": "perlmagick"
}
],
"availability": "Available with Ubuntu Pro: https://ubuntu.com/pro"
}