Login
Newsletter
Werbung

Sicherheit: Pufferüberlauf in GraphicsMagick
Aktuelle Meldungen Distributionen
Name: Pufferüberlauf in GraphicsMagick
ID: FEDORA-2014-9596
Distribution: Fedora
Plattformen: Fedora 20
Datum: Fr, 29. August 2014, 08:40
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1947
Applikationen: GraphicsMagick

Originalnachricht

Name        : GraphicsMagick
Product : Fedora 20
Version : 1.3.20
Release : 1.fc20
URL : http://www.graphicsmagick.org/
Summary : An ImageMagick fork, offering faster image generation and better
quality
Description :
GraphicsMagick is a comprehensive image processing package which is initially
based on ImageMagick 5.5.2, but which has undergone significant re-work by
the GraphicsMagick Group to significantly improve the quality and performance
of the software.

-------------------------------------------------------------------------------
-
Update Information:

New stable upstream release, patched for CVE-2014-1947. See also:
http://www.graphicsmagick.org/NEWS.html#august-16-2014
-------------------------------------------------------------------------------
-
ChangeLog:

* Wed Aug 20 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-1
- 1.3.20, CVE-2014-1947 (#1064098,#1083082)
* Fri Aug 15 2014 Fedora Release Engineering
<rel-eng@lists.fedoraproject.org> - 1.3.19-9
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Wed Aug 13 2014 Orion Poplawski <orion@cora.nwra.com> - 1.3.19-8
- Rebuild for libjbig soname bump
* Fri Jun 6 2014 Fedora Release Engineering
<rel-eng@lists.fedoraproject.org> - 1.3.19-7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sun May 11 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-6
- handle upgrade path for introduction of -doc subpkg in 1.3.19-4
* Mon Feb 3 2014 Remi Collet <remi@fedoraproject.org> - 1.3.19-5
- upstream patch, drop debug output (#1060665)
* Sat Jan 25 2014 Ville Skyttä <ville.skytta@iki.fi> - 1.3.19-4
- Split docs into -doc subpackage, drop README.txt (#1056306).
- Drop no longer needed BrowseDelegateDefault modification.
- Convert docs to UTF-8.
* Thu Jan 9 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-3
- ppc64le is a multilib arch (#1051208)
* Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-2
- BR: jbigkit, libwebp, xdg-utils, xz
* Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-1
- 1.3.19 (#1047676)
* Tue Oct 15 2013 Rex Dieter <rdieter@fedoraproject.org> 1.3.18-5
- trim changelog
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #1064098 - CVE-2014-1947 ImageMagick: PSD writing layer name buffer
overflow ("L%02ld")
https://bugzilla.redhat.com/show_bug.cgi?id=1064098
-------------------------------------------------------------------------------
-

This update can be installed with the "yum" update program. Use
su -c 'yum update GraphicsMagick' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung