File _patchinfo of Package patchinfo.256
<patchinfo incident="ImageMagick"> <packager>lijews</packager> <issue tracker="cve" id="CVE-2014-1958"></issue> <issue tracker="cve" id="CVE-2014-2030"></issue> <issue tracker="bnc" id="863838">VUL-0: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030: ImageMagick: buffer overflow when handling PSD images</issue> <category>security</category> <rating>moderate</rating> <summary>ImageMagick: fixed buffer overflow in PSD image handling</summary> <description>A vulnerability has been reported in ImageMagick, which can be exploited by malicious people to potentially compromise a vulnerable system. The vulnerability is caused due to a boundary error within the "DecodePSDPixels()" function (coders/psd.c) during RLE decoding of a PSD image and can be exploited to cause a buffer overflow. Successful exploitation of this vulnerability may allow execution of arbitrary code. This updates fixes the vulnerability.</description> </patchinfo>