Oval Definition:oval:com.redhat.rhsa:def:20060633
Revision Date:2006-08-24Version:638
Title:RHSA-2006:0633: ImageMagick security update (Moderate)
Description:ImageMagick(TM) is an image display and manipulation tool for the X Window System that can read and write multiple image formats.

  • Tavis Ormandy discovered several integer and buffer overflow flaws in the way ImageMagick decodes XCF, SGI, and Sun bitmap graphic files. An attacker could execute arbitrary code on a victim's machine if they were able to trick the victim into opening a specially crafted image file. (CVE-2006-3743, CVE-2006-3744, CVE-2006-4144)

    Users of ImageMagick should upgrade to these updated packages, which contain backported patches and are not vulnerable to these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2006-3743
    CVE-2006-3744
    CVE-2006-4144
    RHSA-2006:0633
    RHSA-2006:0633-03
    RHSA-2006:0633-03
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • ImageMagick is earlier than 0:5.5.6-20
  • AND ImageMagick is signed with Red Hat master key
  • ImageMagick-perl is earlier than 0:5.5.6-20
  • AND ImageMagick-perl is signed with Red Hat master key
  • ImageMagick-c++ is earlier than 0:5.5.6-20
  • AND ImageMagick-c++ is signed with Red Hat master key
  • ImageMagick-c++-devel is earlier than 0:5.5.6-20
  • AND ImageMagick-c++-devel is signed with Red Hat master key
  • ImageMagick-devel is earlier than 0:5.5.6-20
  • AND ImageMagick-devel is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • ImageMagick-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-devel is signed with Red Hat master key
  • ImageMagick-perl is earlier than 0:6.0.7.1-16
  • AND ImageMagick-perl is signed with Red Hat master key
  • ImageMagick is earlier than 0:6.0.7.1-16
  • AND ImageMagick is signed with Red Hat master key
  • ImageMagick-c++ is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++ is signed with Red Hat master key
  • ImageMagick-c++-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++-devel is signed with Red Hat master key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • ImageMagick is earlier than 0:5.5.6-20
  • AND ImageMagick is signed with Red Hat master key
  • ImageMagick-c++ is earlier than 0:5.5.6-20
  • AND ImageMagick-c++ is signed with Red Hat master key
  • ImageMagick-c++-devel is earlier than 0:5.5.6-20
  • AND ImageMagick-c++-devel is signed with Red Hat master key
  • ImageMagick-devel is earlier than 0:5.5.6-20
  • AND ImageMagick-devel is signed with Red Hat master key
  • ImageMagick-perl is earlier than 0:5.5.6-20
  • AND ImageMagick-perl is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • ImageMagick is earlier than 0:6.0.7.1-16
  • AND ImageMagick is signed with Red Hat master key
  • ImageMagick-c++ is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++ is signed with Red Hat master key
  • ImageMagick-c++-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++-devel is signed with Red Hat master key
  • ImageMagick-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-devel is signed with Red Hat master key
  • ImageMagick-perl is earlier than 0:6.0.7.1-16
  • AND ImageMagick-perl is signed with Red Hat master key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • ImageMagick is earlier than 0:6.0.7.1-16
  • AND ImageMagick is signed with Red Hat redhatrelease2 key
  • ImageMagick-c++ is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++ is signed with Red Hat redhatrelease2 key
  • ImageMagick-c++-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-c++-devel is signed with Red Hat redhatrelease2 key
  • ImageMagick-devel is earlier than 0:6.0.7.1-16
  • AND ImageMagick-devel is signed with Red Hat redhatrelease2 key
  • ImageMagick-perl is earlier than 0:6.0.7.1-16
  • AND ImageMagick-perl is signed with Red Hat redhatrelease2 key
  • BACK