Описание
Security update for ImageMagick
This update for ImageMagick fixes the following issues:
These vulnerabilities could be triggered by processing specially crafted image files, which could lead to a process crash or resource consumtion, or potentially have unspecified futher impact.
- CVE-2016-8684: Mismatch between real filesize and header values (bsc#1005123)
- CVE-2016-8683: Check that filesize is reasonable compared to the header value (bsc#1005127)
- CVE-2016-8682: Stack-buffer read overflow while reading SCT header (bsc#1005125)
- CVE-2016-8677: Memory allocation failure in AcquireQuantumPixels (bsc#1005328)
- CVE-2016-7996, CVE-2016-7997: WPG Reader Issues (bsc#1003629)
- CVE-2016-7800: 8BIM/8BIMW unsigned underflow leads to heap overflow (bsc#1002422)
- CVE-2016-7799: mogrify global buffer overflow (bsc#1002421)
- CVE-2016-7540: writing to RGF format aborts (bsc#1000394)
- CVE-2016-7539: Potential DOS by not releasing memory (bsc#1000715)
- CVE-2016-7538: SIGABRT for corrupted pdb file (bsc#1000712)
- CVE-2016-7537: Out of bound access for corrupted pdb file (bsc#1000711)
- CVE-2016-7535: Out of bound access for corrupted psd file (bsc#1000709)
- CVE-2016-7534: Out of bound access in generic decoder (bsc#1000708)
- CVE-2016-7533: Wpg file out of bound for corrupted file (bsc#1000707)
- CVE-2016-7532: fix handling of corrupted psd file (bsc#1000706)
- CVE-2016-7531: Pbd file out of bound access (bsc#1000704)
- CVE-2016-7530: Out of bound in quantum handling (bsc#1000703)
- CVE-2016-7529: Out-of-bound in quantum handling (bsc#1000399)
- CVE-2016-7528: Out-of-bound access in xcf file coder (bsc#1000434)
- CVE-2016-7527: Out-of-bound access in wpg file coder: (bsc#1000436)
- CVE-2016-7526: out-of-bounds write in ./MagickCore/pixel-accessor.h (bsc#1000702)
- CVE-2016-7525: Heap buffer overflow in psd file coder (bsc#1000701)
- CVE-2016-7524: AddressSanitizer:heap-buffer-overflow READ of size 1 in meta.c:465 (bsc#1000700)
- CVE-2016-7523: AddressSanitizer:heap-buffer-overflow READ of size 1 meta.c:496 (bsc#1000699)
- CVE-2016-7522: Out of bound access for malformed psd file (bsc#1000698)
- CVE-2016-7521: Heap buffer overflow in psd file handling (bsc#1000697)
- CVE-2016-7520: Heap overflow in hdr file handling (bsc#1000696)
- CVE-2016-7519: Out-of-bounds read in coders/rle.c (bsc#1000695)
- CVE-2016-7518: Out-of-bounds read in coders/sun.c (bsc#1000694)
- CVE-2016-7517: Out-of-bounds read in coders/pict.c (bsc#1000693)
- CVE-2016-7516: Out-of-bounds problem in rle, pict, viff and sun files (bsc#1000692)
- CVE-2016-7515: Rle file handling for corrupted file (bsc#1000689)
- CVE-2016-7514: Out-of-bounds read in coders/psd.c (bsc#1000688)
- CVE-2016-7513: Off-by-one error leading to segfault (bsc#1000686)
- CVE-2016-7101: raphicsMagick: SGI Coder Out-Of-Bounds Read Vulnerability (bsc#1001221)
- CVE-2016-6823: raphicsMagick: BMP Coder Out-Of-Bounds Write Vulnerability (bsc#1001066)
- CVE-2015-8959: dOS due to corrupted DDS files (bsc#1000713)
- CVE-2015-8958: Potential DOS in sun file handling due to malformed files (bsc#1000691)
- CVE-2015-8957: Buffer overflow in sun file handling (bsc#1000690)
- CVE-2014-9907: DOS due to corrupted DDS files (bsc#1000714)
- Buffer overflows in SIXEL, PDB, MAP, and TIFF coders (bsc#1002209)
- Divide by zero in WriteTIFFImage (bsc#1002206)
Список пакетов
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server for SAP Applications 12 SP1
SUSE Linux Enterprise Software Development Kit 12 SP1
SUSE Linux Enterprise Workstation Extension 12 SP1
Ссылки
- Link for SUSE-SU-2016:2667-1
- E-Mail link for SUSE-SU-2016:2667-1
- SUSE Security Ratings
- SUSE Bug 1000394
- SUSE Bug 1000399
- SUSE Bug 1000434
- SUSE Bug 1000436
- SUSE Bug 1000686
- SUSE Bug 1000688
- SUSE Bug 1000689
- SUSE Bug 1000690
- SUSE Bug 1000691
- SUSE Bug 1000692
- SUSE Bug 1000693
- SUSE Bug 1000694
- SUSE Bug 1000695
- SUSE Bug 1000696
- SUSE Bug 1000697
- SUSE Bug 1000698
- SUSE Bug 1000699
Описание
coders/dds.c in ImageMagick allows remote attackers to cause a denial of service via a crafted DDS file.
Затронутые продукты
Ссылки
- CVE-2014-9907
- SUSE Bug 1000714
- SUSE Bug 1074610
Описание
Buffer overflow in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (application crash) via a crafted SUN file.
Затронутые продукты
Ссылки
- CVE-2015-8957
- SUSE Bug 1000690
- SUSE Bug 1000691
Описание
coders/sun.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted SUN file.
Затронутые продукты
Ссылки
- CVE-2015-8958
- SUSE Bug 1000690
- SUSE Bug 1000691
- SUSE Bug 1000694
- SUSE Bug 1028079
Описание
coders/dds.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (CPU consumption) via a crafted DDS file.
Затронутые продукты
Ссылки
- CVE-2015-8959
- SUSE Bug 1000713
- SUSE Bug 1074610
Описание
Integer overflow in the BMP coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (crash) via crafted height and width values, which triggers an out-of-bounds write.
Затронутые продукты
Ссылки
- CVE-2016-6823
- SUSE Bug 1001066
- SUSE Bug 1002207
Описание
The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large row value in an sgi file.
Затронутые продукты
Ссылки
- CVE-2016-7101
- SUSE Bug 1001221
- SUSE Bug 1002207
Описание
Off-by-one error in magick/cache.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors.
Затронутые продукты
Ссылки
- CVE-2016-7513
- SUSE Bug 1000686
Описание
The ReadPSDChannelPixels function in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7514
- SUSE Bug 1000688
Описание
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the number of pixels.
Затронутые продукты
Ссылки
- CVE-2016-7515
- SUSE Bug 1000689
- SUSE Bug 1000695
Описание
The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted VIFF file.
Затронутые продукты
Ссылки
- CVE-2016-7516
- SUSE Bug 1000692
- SUSE Bug 1000693
- SUSE Bug 1000695
Описание
The EncodeImage function in coders/pict.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PICT file.
Затронутые продукты
Ссылки
- CVE-2016-7517
- SUSE Bug 1000693
Описание
The ReadSUNImage function in coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SUN file.
Затронутые продукты
Ссылки
- CVE-2016-7518
- SUSE Bug 1000694
- SUSE Bug 1028079
Описание
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7519
- SUSE Bug 1000689
- SUSE Bug 1000695
Описание
Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR file.
Затронутые продукты
Ссылки
- CVE-2016-7520
- SUSE Bug 1000696
Описание
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7521
- SUSE Bug 1000697
Описание
The ReadPSDImage function in MagickCore/locale.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7522
- SUSE Bug 1000698
Описание
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7523
- SUSE Bug 1000699
Описание
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7524
- SUSE Bug 1000700
- SUSE Bug 1002422
Описание
Heap-based buffer overflow in coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7525
- SUSE Bug 1000688
- SUSE Bug 1000701
Описание
coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7526
- SUSE Bug 1000436
- SUSE Bug 1000702
- SUSE Bug 1107616
Описание
coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7527
- SUSE Bug 1000436
- SUSE Bug 1000702
Описание
The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted VIFF file.
Затронутые продукты
Ссылки
- CVE-2016-7528
- SUSE Bug 1000434
Описание
coders/xcf.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted XCF file.
Затронутые продукты
Ссылки
- CVE-2016-7529
- SUSE Bug 1000399
- SUSE Bug 1000434
- SUSE Bug 1000703
- SUSE Bug 1054924
Описание
The quantum handling code in ImageMagick allows remote attackers to cause a denial of service (divide-by-zero error or out-of-bounds write) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7530
- SUSE Bug 1000399
- SUSE Bug 1000703
- SUSE Bug 1054924
Описание
MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted PDB file.
Затронутые продукты
Ссылки
- CVE-2016-7531
- SUSE Bug 1000704
Описание
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7532
- SUSE Bug 1000706
Описание
The ReadWPGImage function in coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WPG file.
Затронутые продукты
Ссылки
- CVE-2016-7533
- SUSE Bug 1000707
Описание
The generic decoder in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7534
- SUSE Bug 1000708
Описание
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted PSD file.
Затронутые продукты
Ссылки
- CVE-2016-7535
- SUSE Bug 1000709
Описание
MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted PDB file.
Затронутые продукты
Ссылки
- CVE-2016-7537
- SUSE Bug 1000711
Описание
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7538
- SUSE Bug 1000712
Описание
Memory leak in AcquireVirtualMemory in ImageMagick before 7 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
Затронутые продукты
Ссылки
- CVE-2016-7539
- SUSE Bug 1000715
Описание
coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by converting an image to rgf format.
Затронутые продукты
Ссылки
- CVE-2016-7540
- SUSE Bug 1000394
Описание
MagickCore/profile.c in ImageMagick before 7.0.3-2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-7799
- SUSE Bug 1002421
Описание
Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow.
Затронутые продукты
Ссылки
- CVE-2016-7800
- SUSE Bug 1002422
Описание
Heap-based buffer overflow in the WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to have unspecified impact via a colormap with a large number of entries.
Затронутые продукты
Ссылки
- CVE-2016-7996
- SUSE Bug 1003629
- SUSE Bug 1067184
Описание
The WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (assertion failure and crash) via vectors related to a ReferenceBlob and a NULL pointer.
Затронутые продукты
Ссылки
- CVE-2016-7997
- SUSE Bug 1003629
Описание
The AcquireQuantumPixels function in MagickCore/quantum.c in ImageMagick before 7.0.3-1 allows remote attackers to have unspecified impact via a crafted image file, which triggers a memory allocation failure.
Затронутые продукты
Ссылки
- CVE-2016-8677
- SUSE Bug 1005328
Описание
The ReadSCTImage function in coders/sct.c in GraphicsMagick 1.3.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SCT header.
Затронутые продукты
Ссылки
- CVE-2016-8682
- SUSE Bug 1005125
Описание
The ReadPCXImage function in coders/pcx.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."
Затронутые продукты
Ссылки
- CVE-2016-8683
- SUSE Bug 1005127
Описание
The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."
Затронутые продукты
Ссылки
- CVE-2016-8684
- SUSE Bug 1005123