File _patchinfo of Package patchinfo.12441

<patchinfo incident="12441">
  <issue tracker="bnc" id="1146065">VUL-1: CVE-2019-14981: ImageMagick: divide-by-zero vulnerability in the MeanShiftImage function can lead to DOS via a crafted file</issue>
  <issue tracker="bnc" id="1146068">VUL-1: CVE-2019-14980: ImageMagick: use after free in the UnmapBlob function which allows DOS by sending a crafted file</issue>
  <issue tracker="bnc" id="1146211">VUL-1: CVE-2019-15141: ImageMagick: WriteTIFFImage in coders/tiff.c in ImageMagick 7.0.8-43 Q16 allows attackers to cause a denial-of-service (application crash resulting from a heap-based buffer over-read) via a crafted TIFF image file, related to TIFF</issue>
  <issue tracker="bnc" id="1146212">VUL-1: CVE-2019-15140: ImageMagick: coders/mat.c in ImageMagick 7.0.8-43 Q16 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact by crafting a Matlab image file</issue>
  <issue tracker="bnc" id="1146213">VUL-1: CVE-2019-15139: ImageMagick: The XWD image (X Window System window dumping file) parsing component in ImageMagick 7.0.8-41 Q16 allows attackers to cause a denial-of-service (application crash resulting from an out-of-bounds Read) in ReadXWDImage</issue>
  <issue tracker="bnc" id="1151781">VUL-1: CVE-2019-16708: ImageMagick: memory leak in magick/xwindow.c</issue>
  <issue tracker="bnc" id="1151782">VUL-1: CVE-2019-16709: ImageMagick: memory leak in coders/dps.c</issue>
  <issue tracker="bnc" id="1151783">VUL-1: CVE-2019-16710: ImageMagick: memory leak in coders/dot.c</issue>
  <issue tracker="bnc" id="1151784">VUL-1: CVE-2019-16711: ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps2.c</issue>
  <issue tracker="bnc" id="1151785">VUL-1: CVE-2019-16712: ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps3.c</issue>
  <issue tracker="bnc" id="1151786">VUL-1: CVE-2019-16713: ImageMagick: memory leak in coders/dot.c</issue>
  <issue tracker="cve" id="2019-14980"/>
  <issue tracker="cve" id="2019-14981"/>
  <issue tracker="cve" id="2019-15139"/>
  <issue tracker="cve" id="2019-15140"/>
  <issue tracker="cve" id="2019-15141"/>
  <issue tracker="cve" id="2019-16708"/>
  <issue tracker="cve" id="2019-16709"/>
  <issue tracker="cve" id="2019-16710"/>
  <issue tracker="cve" id="2019-16711"/>
  <issue tracker="cve" id="2019-16712"/>
  <issue tracker="cve" id="2019-16713"/>
  <packager>pgajdos</packager>
  <rating>moderate</rating>
  <category>security</category>
  <summary>Security update for ImageMagick</summary>
  <description>This update for ImageMagick fixes the following issues:

Security issues fixed:

- CVE-2019-15139: Fixed a denial-of-service vulnerability in ReadXWDImage (bsc#1146213).
- CVE-2019-15140: Fixed a use-after-free bug in the Matlab image parser (bsc#1146212).
- CVE-2019-15141: Fixed a divide-by-zero vulnerability in the MeanShiftImage function (bsc#1146211).
- CVE-2019-14980: Fixed an application crash resulting from a heap-based buffer over-read in WriteTIFFImage (bsc#1146068).
- CVE-2019-14981: Fixed a use after free in the UnmapBlob function (bsc#1146065).
- CVE-2019-16708: Fixed a memory leak in magick/xwindow.c (bsc#1151781).
- CVE-2019-16709: Fixed a memory leak in coders/dps.c (bsc#1151782).
- CVE-2019-16710: Fixed a memory leak in coders/dot.c (bsc#1151783).
- CVE-2019-16711: Fixed a memory leak in Huffman2DEncodeImage in coders/ps2.c (bsc#1151784).
- CVE-2019-16712: Fixed a memory leak in Huffman2DEncodeImage in coders/ps3.c (bsc#1151785).
- CVE-2019-16713: Fixed a memory leak in coders/dot.c (bsc#1151786).
</description>
</patchinfo>