[Pkg-gmagick-im-team] Bug#806442: Double free in coders/tga.c
Raphael Hertzog
hertzog at debian.org
Fri Nov 27 14:17:27 UTC 2015
Source: imagemagick
Version: 8:6.9.1.2-1
Tags: security patch
Severity: important
ImageMagick is vulnerable to a double free in coders/tga.c with an
especially crafted file as reported here:
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1490362
There's supposedly a patch here:
https://github.com/ImageMagick/ImageMagick/commit/4f68e9661518463fca523c9726bb5d940a2aa6d8
This issue only affects recent versions of imagemagick and as such only
applies to the experimental version currently. That said it should be
fixed before any upload to unstable.
Cheers,
--
Raphaël Hertzog ◈ Debian Developer
Support Debian LTS: http://www.freexian.com/services/debian-lts.html
Learn to master Debian: http://debian-handbook.info/get/
More information about the Pkg-gmagick-im-team
mailing list