[Git][security-tracker-team/security-tracker][master] Add CVE-2019-15140/imagemagick

Salvatore Bonaccorso carnil at debian.org
Thu Oct 3 16:44:01 BST 2019



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bb3993b9 by Salvatore Bonaccorso at 2019-10-03T15:43:41Z
Add CVE-2019-15140/imagemagick

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -5360,7 +5360,10 @@ CVE-2019-15141 (WriteTIFFImage in coders/tiff.c in ImageMagick 7.0.8-43 Q16 allo
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/1560
 	NOTE: https://github.com/ImageMagick/ImageMagick6/commit/3c53413eb544cc567309b4c86485eae43e956112
 CVE-2019-15140 (coders/mat.c in ImageMagick 7.0.8-43 Q16 allows remote attackers to ca ...)
-	TODO: check
+	- imagemagick <unfixed>
+	NOTE: https://github.com/ImageMagick/ImageMagick/commit/f7206618d27c2e69d977abf40e3035a33e5f6be0
+	NOTE: ImageMagick6: https://github.com/ImageMagick/ImageMagick6/commit/5caef6e97f3f575cf7bea497865a4c1e624b8010
+	NOTE: https://github.com/ImageMagick/ImageMagick/issues/1554
 CVE-2019-15139 (The XWD image (X Window System window dumping file) parsing component  ...)
 	- imagemagick <unfixed>
 	NOTE: https://github.com/ImageMagick/ImageMagick/commit/c78993d138bf480ab4652b5a48379d4ff75ba5f7



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/bb3993b95043b396ffe2cca140ad105885146bd5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/bb3993b95043b396ffe2cca140ad105885146bd5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191003/f30b84b9/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list