Описание
Security update for GraphicsMagick
This update for GraphicsMagick fixes the following issues:
- CVE-2019-19950: Fixed a use-after-free in ThrowException and ThrowLoggedException of magick/error.c. (boo#1159852)
- CVE-2019-19951: Fixed a heap-based buffer overflow in ImportRLEPixels() (boo#1160321).
- CVE-2019-19953: Fixed a heap-based buffer overflow in EncodeImage() (boo#1160364).
Список пакетов
openSUSE Leap 15.1
GraphicsMagick-1.3.29-lp151.4.14.1
GraphicsMagick-devel-1.3.29-lp151.4.14.1
libGraphicsMagick++-Q16-12-1.3.29-lp151.4.14.1
libGraphicsMagick++-devel-1.3.29-lp151.4.14.1
libGraphicsMagick-Q16-3-1.3.29-lp151.4.14.1
libGraphicsMagick3-config-1.3.29-lp151.4.14.1
libGraphicsMagickWand-Q16-2-1.3.29-lp151.4.14.1
perl-GraphicsMagick-1.3.29-lp151.4.14.1
Ссылки
- E-Mail link for openSUSE-SU-2020:0055-1
- SUSE Security Ratings
- SUSE Bug 1159852
- SUSE Bug 1160321
- SUSE Bug 1160364
- SUSE CVE CVE-2019-19950 page
- SUSE CVE CVE-2019-19951 page
- SUSE CVE CVE-2019-19953 page
Описание
In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c.
Затронутые продукты
openSUSE Leap 15.1:GraphicsMagick-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:GraphicsMagick-devel-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-Q16-12-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-devel-1.3.29-lp151.4.14.1
Ссылки
- CVE-2019-19950
- SUSE Bug 1159852
Описание
In GraphicsMagick 1.4 snapshot-20190423 Q8, there is a heap-based buffer overflow in the function ImportRLEPixels of coders/miff.c.
Затронутые продукты
openSUSE Leap 15.1:GraphicsMagick-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:GraphicsMagick-devel-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-Q16-12-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-devel-1.3.29-lp151.4.14.1
Ссылки
- CVE-2019-19951
- SUSE Bug 1160321
Описание
In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.
Затронутые продукты
openSUSE Leap 15.1:GraphicsMagick-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:GraphicsMagick-devel-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-Q16-12-1.3.29-lp151.4.14.1
openSUSE Leap 15.1:libGraphicsMagick++-devel-1.3.29-lp151.4.14.1
Ссылки
- CVE-2019-19953
- SUSE Bug 1160364