[Pkg-gmagick-im-team] Bug#530838: CVE-2009-1882

Giuseppe Iuculano giuseppe at iuculano.it
Thu Jun 4 06:22:10 UTC 2009


retitle 530946 CVE-2009-1882: ImageMagick Integer Overflow Vulnerability
retitle 530838 CVE-2009-1882: ImageMagick Integer Overflow Vulnerability
thanks


This issue got a CVE id:

CVE-2009-1882[0]:
| Integer overflow in the XMakeImage function in magick/xwindow.c in
| ImageMagick 6.5.2-8 allows remote attackers to cause a denial of
| service (crash) and possibly execute arbitrary code via a crafted TIFF
| file, which triggers a buffer overflow.  NOTE: some of these details
| are obtained from third party information.


For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1882
    http://security-tracker.debian.net/tracker/CVE-2009-1882

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-gmagick-im-team/attachments/20090604/07df3b40/attachment.pgp>


More information about the Pkg-gmagick-im-team mailing list