File _patchinfo of Package patchinfo.9292
<patchinfo incident="9292">
<issue tracker="bnc" id="1128649">VUL-1: CVE-2019-7175: ImageMagick: Some memory leaks exist in DecodeImage in coders/pcd.c.</issue>
<issue tracker="bnc" id="1124365">VUL-1: CVE-2019-7398: GraphicsMagick,ImageMagick: Memory leak in the WriteDIBImage function in coders/dib.c</issue>
<issue tracker="bnc" id="1124367">VUL-1: CVE-2019-7396: GraphicsMagick,ImageMagick: Memory leak in the ReadSIXELImage function in coders/sixel.c</issue>
<issue tracker="bnc" id="1124368">VUL-1: CVE-2019-7395: GraphicsMagick,ImageMagick: Memory leak in the WritePSDChannel function in coders/psd.c</issue>
<issue tracker="bnc" id="1124366">VUL-1: CVE-2019-7397: GraphicsMagick,ImageMagick: Memory leak in the WritePDFImage function in coders/pdf.c</issue>
<issue tracker="bnc" id="1113064">VUL-1: CVE-2018-18544: ImageMagick: There is a memory leak in the function WriteMSLImage of coders/msl.c in ImageMagick 7.0.8-13 Q16.</issue>
<issue tracker="bnc" id="1120381">VUL-1: CVE-2018-20467: imagemagick,graphicsmagick: infinite loop and hang in coders/bmp.c</issue>
<issue tracker="bnc" id="1106415">ImageMagick: Same value of `blur` parameter has different results in newer ImageMagick version</issue>
<issue tracker="bnc" id="1106996">VUL-1: CVE-2018-16412: GraphicsMagick,ImageMagick: heap-based buffer over-read in the coders/psd.c ParseImageResourceBlocks function</issue>
<issue tracker="cve" id="2019-7175"/>
<issue tracker="cve" id="2018-20467"/>
<issue tracker="cve" id="2018-18544"/>
<issue tracker="cve" id="2019-7398"/>
<issue tracker="cve" id="2019-7397"/>
<issue tracker="cve" id="2019-7396"/>
<issue tracker="cve" id="2018-16412"/>
<issue tracker="cve" id="2019-7395"/>
<category>security</category>
<rating>moderate</rating>
<packager>pgajdos</packager>
<description>This update for ImageMagick fixes the following issues:
Security issues fixed:
- CVE-2019-7175: Fixed multiple memory leaks in DecodeImage function (bsc#1128649).
- CVE-2018-18544: Fixed a memory leak in the function WriteMSLImage (bsc#1113064).
- CVE-2018-20467: Fixed an infinite loop in coders/bmp.c (bsc#1120381).
- CVE-2019-7398: Fixed a memory leak in the function WriteDIBImage (bsc#1124365).
- CVE-2019-7396: Fixed a memory leak in the function ReadSIXELImage (bsc#1124367).
- CVE-2019-7395: Fixed a memory leak in the function WritePSDChannel (bsc#1124368).
- CVE-2019-7397: Fixed a memory leak in the function WritePDFImage (bsc#1124366).
- CVE-2018-16412: Prevent heap-based buffer over-read in the ParseImageResourceBlocks
function leading to DOS (bsc#1106996).
Non-security issue fixed:
- Fixed a regression in regards to the 'edge' comand line flag (bsc#1106415)
</description>
<summary>Security update for ImageMagick</summary>
</patchinfo>