[Pkg-gmagick-im-team] Bug#806442: Double free in coders/tga.c

Raphael Hertzog hertzog at debian.org
Fri Nov 27 14:17:27 UTC 2015


Source: imagemagick
Version: 8:6.9.1.2-1
Tags: security patch
Severity: important

ImageMagick is vulnerable to a double free in coders/tga.c with an
especially crafted file as reported here:
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1490362

There's supposedly a patch here:
https://github.com/ImageMagick/ImageMagick/commit/4f68e9661518463fca523c9726bb5d940a2aa6d8

This issue only affects recent versions of imagemagick and as such only
applies to the experimental version currently. That said it should be
fixed before any upload to unstable.

Cheers,
-- 
Raphaël Hertzog ◈ Debian Developer

Support Debian LTS: http://www.freexian.com/services/debian-lts.html
Learn to master Debian: http://debian-handbook.info/get/



More information about the Pkg-gmagick-im-team mailing list