[Pkg-gmagick-im-team] Bug#869834: CVE-2017-11533: heap buffer overflow in uil coder

Bastien ROUCARIES roucaries.bastien at gmail.com
Wed Jul 26 21:12:42 UTC 2017


Source: imagemagick
Version: 8:6.9.7.4+dfsg-12
Severity: serious
Tags: security upstream
X-Debbugs-CC: team at security.debian.org
control: found -1 8:6.8.9.9-5+deb8u8
control: found -1 8:6.8.9.9-5+deb8u9
control: found -1 8:6.7.7.10-5+deb7u14
forwarded:https://github.com/ImageMagick/ImageMagick/issues/562

When ImageMagick 7.0.6-1 processes a crafted file in convert, it can
lead to a heap-based buffer over-read in the WriteUILImage() function
in coders/uil.c.



More information about the Pkg-gmagick-im-team mailing list