File ImageMagick-CVE-2022-44267,44268.patch of Package ImageMagick.29424
Index: ImageMagick-6.8.8-1/magick/property.c
===================================================================
--- ImageMagick-6.8.8-1.orig/magick/property.c
+++ ImageMagick-6.8.8-1/magick/property.c
@@ -3902,6 +3902,7 @@ MagickExport MagickBooleanType SetImageP
geometry=DestroyString(geometry);
break;
}
+#if 0 /* security risk -- disable for now */
if (LocaleCompare("profile",property) == 0)
{
ImageInfo
@@ -3919,6 +3920,7 @@ MagickExport MagickBooleanType SetImageP
image_info=DestroyImageInfo(image_info);
break;
}
+#endif
status=AddValueToSplayTree((SplayTreeInfo *) image->properties,
ConstantString(property),ConstantString(value));
break;