[Pkg-gmagick-im-team] Bug#767240: Three security bug in imagemagick

Salvatore Bonaccorso carnil at debian.org
Fri Oct 31 11:38:46 UTC 2014


Hi Bastien,

On Wed, Oct 29, 2014 at 03:22:24PM +0100, Bastien ROUCARIES wrote:
> package: imagemagick
> version: 8:6.6.0.4-3
> severity: serious
> control: tag -1 + security
> 
> This is a bug for tracking :
> TEMP-0000000-77B6EF buffer overflow in PCX and DCM coder
> TEMP-0000000-3CE5AC Off-by-one count when parsing an 8BIM profile
> TEMP-0000000-1800A5 Don't clone a 0x0 image breaking some assumption

As we both agreed: These issues look like low-impact and thus no-dsa
(no DSA planned for them), but woul be great to have them fixed trough
a stable-proposed-update for Wheezy.

Regards,
Salvatore



More information about the Pkg-gmagick-im-team mailing list