Oval Definition:oval:org.opensuse.security:def:90503
Revision Date:2019-06-17Version:1
Title:Security update for ImageMagick (Moderate)
Description:

This update for ImageMagick fixes the following issues:

Security issues fixed:

- CVE-2019-11472: Fixed a denial-of-service in ReadXWDImage() (bsc#1133204). - CVE-2019-11470: Fixed a denial-of-service in ReadCINImage() (bsc#1133205). - CVE-2019-11506: Fixed a heap-based buffer overflow in the WriteMATLABImage() (bsc#1133498). - CVE-2019-11505: Fixed a heap-based buffer overflow in the WritePDBImage() (bsc#1133501). - CVE-2019-11598: Fixed a heap-based buffer overread in WritePNMImage() (bsc#1136732)

We also now disable PCL in the -SUSE configuration, as it also uses ghostscript for decoding (bsc#1136183)

Family:unixClass:patch
Status:Reference(s):1133204
1133205
1133498
1133501
1136183
1136732
CVE-2019-11470
CVE-2019-11472
CVE-2019-11505
CVE-2019-11506
CVE-2019-11598
SUSE-SU-2019:1523-1
Platform(s):SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • ImageMagick-7.0.7.34-3.61.3 is installed
  • OR ImageMagick-config-7-SUSE-7.0.7.34-3.61.3 is installed
  • OR ImageMagick-devel-7.0.7.34-3.61.3 is installed
  • OR libMagick++-7_Q16HDRI4-7.0.7.34-3.61.3 is installed
  • OR libMagick++-devel-7.0.7.34-3.61.3 is installed
  • OR libMagickCore-7_Q16HDRI6-7.0.7.34-3.61.3 is installed
  • OR libMagickWand-7_Q16HDRI6-7.0.7.34-3.61.3 is installed
  • BACK