Security update for ImageMagick
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2019-15139: Fixed a denial-of-service vulnerability in ReadXWDImage (bsc#1146213). - CVE-2019-15140: Fixed a use-after-free bug in the Matlab image parser (bsc#1146212). - CVE-2019-15141: Fixed a divide-by-zero vulnerability in the MeanShiftImage function (bsc#1146211). - CVE-2019-14980: Fixed an application crash resulting from a heap-based buffer over-read in WriteTIFFImage (bsc#1146068). - CVE-2019-14981: Fixed a use after free in the UnmapBlob function (bsc#1146065). - CVE-2019-16708: Fixed a memory leak in magick/xwindow.c (bsc#1151781). - CVE-2019-16709: Fixed a memory leak in coders/dps.c (bsc#1151782). - CVE-2019-16710: Fixed a memory leak in coders/dot.c (bsc#1151783). - CVE-2019-16711: Fixed a memory leak in Huffman2DEncodeImage in coders/ps2.c (bsc#1151784). - CVE-2019-16712: Fixed a memory leak in Huffman2DEncodeImage in coders/ps3.c (bsc#1151785). - CVE-2019-16713: Fixed a memory leak in coders/dot.c (bsc#1151786). This update was imported from the SUSE:SLE-15:Update update project.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2019-15139: Fixed a denial-of-service vulnerability in ReadXWDImage (bsc#1146213). - CVE-2019-15140: Fixed a use-after-free bug in the Matlab image parser (bsc#1146212). - CVE-2019-15141: Fixed a divide-by-zero vulnerability in the MeanShiftImage function (bsc#1146211). - CVE-2019-14980: Fixed an application crash resulting from a heap-based buffer over-read in WriteTIFFImage (bsc#1146068). - CVE-2019-14981: Fixed a use after free in the UnmapBlob function (bsc#1146065). - CVE-2019-16708: Fixed a memory leak in magick/xwindow.c (bsc#1151781). - CVE-2019-16709: Fixed a memory leak in coders/dps.c (bsc#1151782). - CVE-2019-16710: Fixed a memory leak in coders/dot.c (bsc#1151783). - CVE-2019-16711: Fixed a memory leak in Huffman2DEncodeImage in coders/ps2.c (bsc#1151784). - CVE-2019-16712: Fixed a memory leak in Huffman2DEncodeImage in coders/ps3.c (bsc#1151785). - CVE-2019-16713: Fixed a memory leak in coders/dot.c (bsc#1151786). This update was imported from the SUSE:SLE-15:Update update project.
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1146065
- https://bugzilla.suse.com/1146068
- https://bugzilla.suse.com/1146211
- https://bugzilla.suse.com/1146212
- https://bugzilla.suse.com/1146213
- https://bugzilla.suse.com/1151781
- https://bugzilla.suse.com/1151782
- https://bugzilla.suse.com/1151783
- https://bugzilla.suse.com/1151784
- https://bugzilla.suse.com/1151785
- https://bugzilla.suse.com/1151786
- https://lists.opensuse.org/archives/list/[email protected]/thread/HKLSLL4IX54TYZVRJUYXN4DW53SHUXMP/#HKLSLL4IX54TYZVRJUYXN4DW53SHUXMP
- https://www.suse.com/security/cve/CVE-2019-14980
- https://www.suse.com/security/cve/CVE-2019-14981
- https://www.suse.com/security/cve/CVE-2019-15139
- https://www.suse.com/security/cve/CVE-2019-15140
- https://www.suse.com/security/cve/CVE-2019-15141
- https://www.suse.com/security/cve/CVE-2019-16708
- https://www.suse.com/security/cve/CVE-2019-16709
- https://www.suse.com/security/cve/CVE-2019-16710
- https://www.suse.com/security/cve/CVE-2019-16711
- https://www.suse.com/security/cve/CVE-2019-16712
- https://www.suse.com/security/cve/CVE-2019-16713