Security update for ImageMagick
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2019-15139: Fixed a denial-of-service vulnerability in ReadXWDImage. (bsc#1146213) - CVE-2019-15140: Fixed a use-after-free bug in the Matlab image parser. (bsc#1146212) - CVE-2019-15141: Fixed a divide-by-zero vulnerability in the MeanShiftImage function. (bsc#1146211) - CVE-2019-14980: Fixed an application crash resulting from a heap-based buffer over-read in WriteTIFFImage. (bsc#1146068) - CVE-2019-16708: Fixed a memory leak in magick/xwindow.c (bsc#1151781). - CVE-2019-16709: Fixed a memory leak in coders/dps.c (bsc#1151782). - CVE-2019-16710: Fixed a memory leak in coders/dot.c (bsc#1151783). - CVE-2019-16711: Fixed a memory leak in Huffman2DEncodeImage in coders/ps2.c (bsc#1151784). - CVE-2019-16712: Fixed a memory leak in Huffman2DEncodeImage in coders/ps3.c (bsc#1151785). - CVE-2019-16713: Fixed a memory leak in coders/dot.c (bsc#1151786).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for ImageMagick fixes the following issues: Security issues fixed: - CVE-2019-15139: Fixed a denial-of-service vulnerability in ReadXWDImage. (bsc#1146213) - CVE-2019-15140: Fixed a use-after-free bug in the Matlab image parser. (bsc#1146212) - CVE-2019-15141: Fixed a divide-by-zero vulnerability in the MeanShiftImage function. (bsc#1146211) - CVE-2019-14980: Fixed an application crash resulting from a heap-based buffer over-read in WriteTIFFImage. (bsc#1146068) - CVE-2019-16708: Fixed a memory leak in magick/xwindow.c (bsc#1151781). - CVE-2019-16709: Fixed a memory leak in coders/dps.c (bsc#1151782). - CVE-2019-16710: Fixed a memory leak in coders/dot.c (bsc#1151783). - CVE-2019-16711: Fixed a memory leak in Huffman2DEncodeImage in coders/ps2.c (bsc#1151784). - CVE-2019-16712: Fixed a memory leak in Huffman2DEncodeImage in coders/ps3.c (bsc#1151785). - CVE-2019-16713: Fixed a memory leak in coders/dot.c (bsc#1151786).
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1146068
- https://bugzilla.suse.com/1146211
- https://bugzilla.suse.com/1146212
- https://bugzilla.suse.com/1146213
- https://bugzilla.suse.com/1151781
- https://bugzilla.suse.com/1151782
- https://bugzilla.suse.com/1151783
- https://bugzilla.suse.com/1151784
- https://bugzilla.suse.com/1151785
- https://bugzilla.suse.com/1151786
- https://www.suse.com/security/cve/CVE-2019-14980
- https://www.suse.com/security/cve/CVE-2019-15139
- https://www.suse.com/security/cve/CVE-2019-15140
- https://www.suse.com/security/cve/CVE-2019-15141
- https://www.suse.com/security/cve/CVE-2019-16708
- https://www.suse.com/security/cve/CVE-2019-16709
- https://www.suse.com/security/cve/CVE-2019-16710
- https://www.suse.com/security/cve/CVE-2019-16711
- https://www.suse.com/security/cve/CVE-2019-16712
- https://www.suse.com/security/cve/CVE-2019-16713
- https://www.suse.com/support/update/announcement/2019/suse-su-20192785-2/