USN-3363-2
Dashboard / Vulnerabilities / USN-3363-2
USN-3363-2
Summary: imagemagick regression
Details: USN-3363-1 fixed vulnerabilities in ImageMagick. The update caused a regression for certain users when processing images. The problematic patch has been reverted pending further investigation. We apologize for the inconvenience. Original advisory details: It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges of the user invoking the program.
Affected packages
Package
Name: imagemagick
Purl: pkg:deb/ubuntu/imagemagick@8:6.7.7.10-6ubuntu3.9?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
