You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa GraphicsMagick

Sigurnosni nedostatak programskog paketa GraphicsMagick

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2014-9927
2014-08-30 03:11:49
——————————————————————————–

Name : GraphicsMagick
Product : Fedora 20
Version : 1.3.20
Release : 3.fc20
URL : http://www.graphicsmagick.org/
Summary : An ImageMagick fork, offering faster image generation and better quality
Description :
GraphicsMagick is a comprehensive image processing package which is initially
based on ImageMagick 5.5.2, but which has undergone significant re-work by
the GraphicsMagick Group to significantly improve the quality and performance
of the software.

——————————————————————————–
Update Information:

Better fix for psd security issue, CVE-2014-1947.
——————————————————————————–
ChangeLog:

* Thu Aug 28 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-3
– go back to original L%02d format variant
* Mon Aug 25 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-2
– better fix for CVE-2014-1947 (#1064098,#1083082)
* Wed Aug 20 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-1
– 1.3.20, CVE-2014-1947 (#1064098,#1083082)
* Fri Aug 15 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.3.19-9
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild
* Wed Aug 13 2014 Orion Poplawski <orion@cora.nwra.com> – 1.3.19-8
– Rebuild for libjbig soname bump
* Fri Jun 6 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> – 1.3.19-7
– Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild
* Sun May 11 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-6
– handle upgrade path for introduction of -doc subpkg in 1.3.19-4
* Mon Feb 3 2014 Remi Collet <remi@fedoraproject.org> – 1.3.19-5
– upstream patch, drop debug output (#1060665)
* Sat Jan 25 2014 Ville Skyttä <ville.skytta@iki.fi> – 1.3.19-4
– Split docs into -doc subpackage, drop README.txt (#1056306).
– Drop no longer needed BrowseDelegateDefault modification.
– Convert docs to UTF-8.
* Thu Jan 9 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-3
– ppc64le is a multilib arch (#1051208)
* Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-2
– BR: jbigkit, libwebp, xdg-utils, xz
* Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-1
– 1.3.19 (#1047676)
* Tue Oct 15 2013 Rex Dieter <rdieter@fedoraproject.org> 1.3.18-5
– trim changelog
——————————————————————————–
References:

[ 1 ] Bug #1064098 – CVE-2014-1947 ImageMagick: PSD writing layer name buffer overflow (“L%02ld”)
https://bugzilla.redhat.com/show_bug.cgi?id=1064098
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update GraphicsMagick’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorMarko Stanec
Cert idNCERT-REF-2014-09-0016-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Nadogradnja za Adobe Flash Player

Adobe je izdao nadogradnju za otklanjanje više kritičnih ranjivosti programskog paketa Adobe Flash Player. Primjenom nadogradnje otklanjanju se ranjivosti curenja...

Close