Denial of Service in rubygem-rmagick
ID: | FEDORA-2017-f5a9805c5b |
Distribution: | Fedora |
Plattformen: | Fedora 27 |
Datum: | Do, 5. Oktober 2017, 06:40 |
Referenzen: | http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-13768
https://bugzilla.redhat.com/show_bug.cgi?id=1496032 https://bugzilla.redhat.com/show_bug.cgi?id=1496308 |
Applikationen: | rubygem-rmagick |
Originalnachricht |
|
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2017-f5a9805c5b 2017-10-04 20:36:58.446917 -------------------------------------------------------------------------------- Name : rubygem-rmagick Product : Fedora 27 Version : 2.16.0 Release : 7.fc27 URL : https://github.com/rmagick/rmagick Summary : Ruby binding to ImageMagick Description : RMagick is an interface between Ruby and ImageMagick. -------------------------------------------------------------------------------- Update Information: 6.9.9-15 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1487680 - CVE-2017-13768 ImageMagick: NULL pointer dereference in IdentifyImage function in MagickCore/identify.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1487680 [ 2 ] Bug #1496308 - [config/type-ghostscript.xml.in] using outdated hardcoded paths for (URW)++ fonts https://bugzilla.redhat.com/show_bug.cgi?id=1496308 [ 3 ] Bug #1496032 - convert: Ignoring invalid time value https://bugzilla.redhat.com/show_bug.cgi?id=1496032 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade rubygem-rmagick' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org |