[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 2236-1] graphicsmagick security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Package        : graphicsmagick
Version        : 1.3.20-3+deb8u11
CVE ID         : CVE-2020-12672
Debian Bug     : 960000


A vulnerability was discovered in graphicsmagick, a collection of image
processing tools, that results in a heap buffer overwrite when
magnifying MNG images.

For Debian 8 "Jessie", this problem has been fixed in version
1.3.20-3+deb8u11.

We recommend that you upgrade your graphicsmagick packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=8hRH
-----END PGP SIGNATURE-----


Reply to: