Package: graphicsmagick
Severity: important
Tags: security

Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for graphicsmagick.

CVE-2008-3134[0]:
| Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4
| allow remote attackers to cause a denial of service (crash, infinite
| loop, or memory consumption) via (a) unspecified vectors in the (1)
| AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA,
| and (9) TGA decoder readers; and (b) the GetImageCharacteristics
| function in magick/image.c, as reachable from a crafted (10) PNG, (11)
| JPEG, (12) BMP, or (13) TIFF file.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

Could you also please check, if imagemagick is vulnerable?

Cheers
Steffen


For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3134
    http://security-tracker.debian.net/tracker/CVE-2008-3134



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to