Debian Security Advisory

DLA-1045-1 graphicsmagick -- LTS security update

Date Reported:
30 Jul 2017
Affected Packages:
graphicsmagick
Vulnerable:
Yes
Security database references:
In the Debian bugtracking system: Bug 867077, Bug 867746, Bug 870149.
In Mitre's CVE dictionary: CVE-2017-10799, CVE-2017-11102, CVE-2017-11140, CVE-2017-11403, CVE-2017-11636, CVE-2017-11637, CVE-2017-11638, CVE-2017-11641, CVE-2017-11642, CVE-2017-11643.
More information:

Multiple security vulnerabilities, NULL pointer dereferences, use-after-free and heap based overflows, were discovered in graphicsmagick that can lead to denial of service by consuming all available memory or segmentation faults.

For Debian 7 Wheezy, these problems have been fixed in version 1.3.16-1.1+deb7u8.

We recommend that you upgrade your graphicsmagick packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS