You are here
Home > Preporuke > Sigurnosni nedostaci programskog paketa graphicsmagick

Sigurnosni nedostaci programskog paketa graphicsmagick

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-4266-1
February 04, 2020

graphicsmagick vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 16.04 LTS

Summary:

Several security issues were fixed in GraphicsMagick.

Software Description:
– graphicsmagick: collection of image processing tools

Details:

It was discovered that GraphicsMagick incorrectly handled certain image files.
An attacker could possibly use this issue to cause a denial of service or other
unspecified impact.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 16.04 LTS:
graphicsmagick 1.3.23-1ubuntu0.6
libgraphicsmagick++-q16-12 1.3.23-1ubuntu0.6
libgraphicsmagick-q16-3 1.3.23-1ubuntu0.6

In general, a standard system update will make all the necessary changes.

References:
https://usn.ubuntu.com/4266-1
CVE-2017-17912, CVE-2017-17913, CVE-2017-17915, CVE-2017-18219,
CVE-2017-18229, CVE-2017-18230, CVE-2017-18231

Package Information:
https://launchpad.net/ubuntu/+source/graphicsmagick/1.3.23-1ubuntu0.6
—–BEGIN PGP SIGNATURE—–
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=Syhs
—–END PGP SIGNATURE—–

AutorZvonimir Bosnjak
Cert idNCERT-REF-2020-02-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa spamassassin

Otkriveni su sigurnosni nedostaci u programskom paketu spamassassin za operacijski sustav Ubuntu. Otkriveni nedostaci potencijalnim napadačima omogućuju izvršavanje proizvoljnog programskog...

Close