[Git][security-tracker-team/security-tracker][master] Add CVE-2018-14436/imagemagick

Salvatore Bonaccorso carnil at debian.org
Fri Jul 20 20:11:22 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
4974fd0b by Salvatore Bonaccorso at 2018-07-20T21:10:54+02:00
Add CVE-2018-14436/imagemagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -13,7 +13,10 @@ CVE-2018-14437 (ImageMagick 7.0.8-4 has a memory leak in parse8BIM in coders/met
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/082223fb992448dbb574747deac9a30f986c116e
 	NOTE: ImageMagick6: https://github.com/ImageMagick/ImageMagick6/commit/0812674565df667b1b3e4122ad259096de311c6c
 CVE-2018-14436 (ImageMagick 7.0.8-4 has a memory leak in ReadMIFFImage in ...)
-	TODO: check
+	- imagemagick <unfixed> (unimportant)
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/1191
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/4b352c0be410ad900469a079e389178f878aded8
+	NOTE: ImageMagick6: https://github.com/ImageMagick/ImageMagick6/commit/ae3eecad2f59e27123c1a6c891be75d06fc03656
 CVE-2018-14435 (ImageMagick 7.0.8-4 has a memory leak in DecodeImage in coders/pcd.c. ...)
 	TODO: check
 CVE-2018-14434 (ImageMagick 7.0.8-4 has a memory leak for a colormap in WriteMPCImage ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4974fd0b57fc599d6a5a0bdc472089226e54e2ae

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/4974fd0b57fc599d6a5a0bdc472089226e54e2ae
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180720/6bec7661/attachment.html>


More information about the debian-security-tracker-commits mailing list