Security update for ImageMagick
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2018-18024: Fixed an infinite loop in the ReadBMPImage function. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file. (bsc#1111069) - CVE-2018-18016: Fixed a memory leak in WritePCXImage (bsc#1111072). - CVE-2018-17966: Fixed a memory leak in WritePDBImage (bsc#1110746). Non security issues fixed: - Fixed -morphology EdgeIn output (bsc#1106254)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2018-18024: Fixed an infinite loop in the ReadBMPImage function. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted bmp file. (bsc#1111069) - CVE-2018-18016: Fixed a memory leak in WritePCXImage (bsc#1111072). - CVE-2018-17966: Fixed a memory leak in WritePDBImage (bsc#1110746). Non security issues fixed: - Fixed -morphology EdgeIn output (bsc#1106254)
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1106254
- https://bugzilla.suse.com/1110746
- https://bugzilla.suse.com/1111069
- https://bugzilla.suse.com/1111072
- https://www.suse.com/security/cve/CVE-2018-17966
- https://www.suse.com/security/cve/CVE-2018-18016
- https://www.suse.com/security/cve/CVE-2018-18024
- https://www.suse.com/support/update/announcement/2018/suse-su-20183753-1/