UbuntuUpdates.org

Package "graphicsmagick"

Name: graphicsmagick

Description:

collection of image processing tools

Latest version: 1.4+really1.3.35-1ubuntu0.1
Release: focal (20.04)
Level: updates
Repository: universe
Homepage: http://www.graphicsmagick.org/

Links


Download "graphicsmagick"


Other versions of "graphicsmagick" in Focal

Repository Area Version
base universe 1.4+really1.3.35-1
security universe 1.4+really1.3.35-1ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.4+really1.3.35-1ubuntu0.1 2023-03-27 18:06:53 UTC

  graphicsmagick (1.4+really1.3.35-1ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: heap buffer overflow in ReadMNGImage
    - debian/pacthes/CVE-2020-12672: fix small heap overwrite or assertion if
      magnifying and image to be magnified has rows or columns == 1.
    - CVE-2020-12672
  * SECURITY UPDATE: heap buffer overflow when parsing MIFF files
    - debian/patches/CVE-2022-1270.patch: validate claimed bzip2-compressed
      row length prior to reading data into fixed size buffer.
    - CVE-2022-1270

 -- Camila Camargo de Matos <email address hidden> Tue, 21 Mar 2023 11:20:03 -0300

CVE-2020-12672 GraphicsMagick through 1.3.35 has a heap-based buffer overflow in ReadMNGImage in coders/png.c.
CVE-2022-1270 In GraphicsMagick, a heap buffer overflow was found when parsing MIFF.



About   -   Send Feedback to @ubuntu_updates