Security update for ImageMagick

This update for ImageMagick fixes the following issues:

- CVE-2019-13301: Fixed a memory leak in AcquireMagickMemory() (bsc#1140554).
- CVE-2019-13309: Fixed a memory leak at AcquireMagickMemory due to mishandling the NoSuchImage error in CLIListOperatorImages (bsc#1140520).
- CVE-2019-13310: Fixed a memory leak at AcquireMagickMemory because of an error in MagickWand/mogrify.c (bsc#1140501).
- CVE-2019-13311: Fixed a memory leak at AcquireMagickMemory because of a wand/mogrify.c error (bsc#1140513).
- CVE-2019-13303: Fixed a heap-based buffer over-read in MagickCore/composite.c in CompositeImage (bsc#1140549).
- CVE-2019-13296: Fixed a memory leak in AcquireMagickMemory because of an error in CLIListOperatorImages in MagickWand/operation.c (bsc#1140665).
- CVE-2019-13299: Fixed a heap-based buffer over-read at MagickCore/pixel-accessor.h in GetPixelChannel (bsc#1140668).
- CVE-2019-13454: Fixed a division by zero in RemoveDuplicateLayers in MagickCore/layer.c (bsc#1141171).
- CVE-2019-13295: Fixed a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage (bsc#1140664).
- CVE-2019-13297: Fixed a heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage (bsc#1140666).
- CVE-2019-12979: Fixed the use of uninitialized values in SyncImageSettings() (bsc#1139886).
- CVE-2019-13391: Fixed a heap-based buffer over-read in MagickCore/fourier.c (bsc#1140673).
- CVE-2019-13308: Fixed a heap-based buffer overflow in MagickCore/fourier.c (bsc#1140534).
- CVE-2019-13302: Fixed a heap-based buffer over-read in MagickCore/fourier.c in ComplexImages (bsc#1140552).
- CVE-2019-13298: Fixed a heap-based buffer overflow at MagickCore/pixel-accessor.h in SetPixelViaPixelInfo (bsc#1140667).
- CVE-2019-13300: Fixed a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages (bsc#1140669).
- CVE-2019-13307: Fixed a heap-based buffer overflow at MagickCore/statistic.c (bsc#1140538).
- CVE-2019-12977: Fixed the use of uninitialized values in WriteJP2Imag() (bsc#1139884).
- CVE-2019-12975: Fixed a memory leak in the WriteDPXImage() in coders/dpx.c (bsc#1140106).
- CVE-2019-13135: Fixed the use of uninitialized values in ReadCUTImage() (bsc#1140103).
- CVE-2019-12978: Fixed the use of uninitialized values in ReadPANGOImage() (bsc#1139885).
- CVE-2019-12974: Fixed a NULL pointer dereference in the ReadPANGOImage() (bsc#1140111).
- CVE-2019-13304: Fixed a stack-based buffer overflow at coders/pnm.c in WritePNMImage (bsc#1140547).
- CVE-2019-13305: Fixed one more stack-based buffer overflow at coders/pnm.c in WritePNMImage (bsc#1140545).
- CVE-2019-13306: Fixed an additional stack-based buffer overflow at coders/pnm.c in WritePNMImage (bsc#1140543).
- CVE-2019-13133: Fixed a memory leak in the ReadBMPImage() (bsc#1140100).
- CVE-2019-13134: Fixed a memory leak in the ReadVIFFImage() (bsc#1140102).
- CVE-2019-13137: Fixed a memory leak in the ReadPSImage() (bsc#1140105).
- CVE-2019-13136: Fixed a integer overflow vulnerability in the TIFFSeekCustomStream() (bsc#1140104).
- CVE-2019-12976: Fixed a memory leak in the ReadPCLImage() in coders/pcl.c(bsc#1140110).

This update was imported from the SUSE:SLE-15:Update update project.

Fixed bugs
bnc#1140665
VUL-1: CVE-2019-13296: ImageMagick: direct memory leaks in AcquireMagickMemory because of an error in CLIListOperatorImages in MagickWand/operation.c
bnc#1140111
VUL-1: CVE-2019-12974: ImageMagick: NULL pointer dereference in the function ReadPANGOImage
bnc#1140547
VUL-0: CVE-2019-13304: ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage
bnc#1139886
VUL-0: CVE-2019-12979: ImageMagick: "use of uninitialized value" vulnerability in the SyncImageSettings function
bnc#1140110
VUL-1: CVE-2019-12976: ImageMagick: memory leak in the ReadPCLImage function in coders/pcl.c
bnc#1140102
VUL-1: CVE-2019-13134: ImageMagick: memory leak vulnerability in the function ReadVIFFImage
bnc#1140104
VUL-0: CVE-2019-13136: ImageMagick: integer overflow vulnerability in the function TIFFSeekCustomStream
bnc#1139884
VUL-0: CVE-2019-12977: ImageMagick: "use of uninitialized value" vulnerability in the WriteJP2Image function
bnc#1140501
VUL-1: CVE-2019-13310: ImageMagick: memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c.
bnc#1140664
VUL-1: CVE-2019-13295: ImageMagick: heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage
bnc#1140668
VUL-1: CVE-2019-13299: ImageMagick: heap-based buffer over-read at MagickCore/pixel-accessor.h in GetPixelChannel
bnc#1141171
VUL-1: CVE-2019-13454: ImageMagick: division by zero in RemoveDuplicateLayers in MagickCore/layer.c
bnc#1140545
VUL-0: CVE-2019-13305: ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage
bnc#1140513
VUL-1: CVE-2019-13311: ImageMagick: memory leaks at AcquireMagickMemory because of a wand/mogrify.c error
bnc#1140520
VUL-1: CVE-2019-13309: ImageMagick: memory leaks at AcquireMagickMemory due to mishandling the NoSuchImage error in CLIListOperatorImages
bnc#1140554
VUL-1: CVE-2019-13301: ImageMagick: memory leaks in AcquireMagickMemory
bnc#1140543
VUL-0: CVE-2019-13306: ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage
bnc#1140106
VUL-1: CVE-2019-12975: ImageMagick: Memory leak vulnerability in the WriteDPXImage function in coders/dpx.c
bnc#1140552
VUL-0: CVE-2019-13302: ImageMagick: heap-based buffer over-read in MagickCore/fourier.c in ComplexImages
bnc#1140669
VUL-0: CVE-2019-13300: ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages
bnc#1140673
VUL-0: CVE-2019-13391: ImageMagick: heap-based buffer over-read in MagickCore/fourier.c
bnc#1140105
VUL-1: CVE-2019-13137: ImageMagick: memory leak vulnerability in the function ReadPSImage
bnc#1140667
VUL-0: CVE-2019-13298: ImageMagick: heap-based buffer overflow at MagickCore/pixel-accessor.h in SetPixelViaPixelInfo
bnc#1140103
VUL-1: CVE-2019-13135: ImageMagick: "use of uninitialized value" vulnerability in the function ReadCUTImage
bnc#1139885
VUL-0: CVE-2019-12978: ImageMagick: "use of uninitialized value" vulnerability in the ReadPANGOImage function
bnc#1140549
VUL-1: CVE-2019-13303: ImageMagick: heap-based buffer over-read in MagickCore/composite.c in CompositeImage.
bnc#1140534
VUL-1 CVE-2019-13308: ImageMagick: heap-based buffer overflow in MagickCore/fourier.c
bnc#1140100
VUL-1: CVE-2019-13133: ImageMagick: memory leak vulnerability in the function ReadBMPImage
bnc#1140538
VUL-0: CVE-2019-13307: ImageMagick: heap-based buffer overflow at MagickCore/statistic.c
bnc#1140666
VUL-1: CVE-2019-13297: ImageMagick: heap-based buffer over-read at MagickCore/threshold.c in AdaptiveThresholdImage
Selected Binaries
openSUSE Build Service is sponsored by