Security update for GraphicsMagick

This update for GraphicsMagick fixes the following issues:

* CVE-2017-13775: Fixed a denial of service issue in ReadJNXImage() in coders/jnx.c (boo#1056431)
* CVE-2017-13063: Fixed a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c (bsc#1055050)
* CVE-2017-13064: Fixed a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c (bsc#1055042)
* CVE-2017-12936: The ReadWMFImage function in coders/wmf.c in GraphicsMagick had a use-after-free issue for data associated with exception reporting. (bsc#1054598)
* CVE-2017-13139: The ReadOneMNGImage function in coders/png.c had an out-of-bounds read with the MNG CLIP chunk. (bsc#1055430)
* CVE-2017-12937: The ReadSUNImage function in coders/sun.c in GraphicsMagick had a colormap heap-based buffer over-read. (bsc#1054596)

Fixed bugs
bnc#1056431
VUL-1: CVE-2017-13775: GraphicsMagick, ImageMagick: denial of service issue in ReadJNXImage() in coders/jnx.c
bnc#1055050
VUL-0: CVE-2017-13063: GraphicsMagick: GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability inthe function GetStyleTokens in coders/svg.c
bnc#1055042
VUL-0: CVE-2017-13064: GraphicsMagick: GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability inthe function GetStyleTokens in coders/svg.c
bnc#1054598
VUL-0: CVE-2017-12936: GraphicsMagick: The ReadWMFImage function in coders/wmf.c in GraphicsMagick 1.3.26 has ause-after-free issue for data associated with exception reporting.
bnc#1055430
VUL-0: CVE-2017-13139: GraphicsMagick,ImageMagick: In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, theReadOneMNGImage function in coders/png.c has an out-of-bounds read withthe MNG CLIP chunk.
bnc#1054596
VUL-1: CVE-2017-12937: GraphicsMagick: The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has acolormap heap-based buffer over-read.
Selected Binaries
openSUSE Build Service is sponsored by