SUSE-SU-2019:1523-1 -- SLES ImageMagick, libMagick++-7_Q16HDRI4, libMagick++-devel, libMagickCore-7_Q16HDRI6, libMagickWand-7_Q16HDRI6ID: oval:org.secpod.oval:def:89050920 | Date: (C)2023-10-16 (M)2023-10-15 |
Class: PATCH | Family: unix |
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2019-11472: Fixed a denial-of-service in ReadXWDImage . - CVE-2019-11470: Fixed a denial-of-service in ReadCINImage . - CVE-2019-11506: Fixed a heap-based buffer overflow in the WriteMATLABImage . - CVE-2019-11505: Fixed a heap-based buffer overflow in the WritePDBImage . - CVE-2019-11598: Fixed a heap-based buffer overread in WritePNMImage We also now disable PCL in the -SUSE configuration, as it also uses ghostscript for decoding
Platform: |
SUSE Linux Enterprise Desktop 15 |
SUSE Linux Enterprise Desktop 15 SP1 |
Product: |
ImageMagick |
libMagick++-7_Q16HDRI4 |
libMagick++-devel |
libMagickCore-7_Q16HDRI6 |
libMagickWand-7_Q16HDRI6 |