openSUSE-SU-2019:0003-1
Dashboard / Vulnerabilities / openSUSE-SU-2019:0003-1
openSUSE-SU-2019:0003-1
Summary: Security update for GraphicsMagick
Details: This update for GraphicsMagick fixes the following issues: Security vulnerabilities fixed: - CVE-2018-20184: Fixed heap-based buffer overflow in the WriteTGAImage function of tga.c (bsc#1119822) - CVE-2018-20189: Fixed denial of service vulnerability in ReadDIBImage function of coders/dib.c (bsc#1119790) This update was imported from the openSUSE:Leap:15.0:Update update project.
References: https://lists.opensuse.org/archives/list/[email protected]/thread/HPY3MPACM4T2U3VDM6JPW5N77CGP32H6/#HPY3MPACM4T2U3VDM6JPW5N77CGP32H6, https://bugzilla.suse.com/1119790, https://bugzilla.suse.com/1119822, https://www.suse.com/security/cve/CVE-2018-20184, https://www.suse.com/security/cve/CVE-2018-20189
Affected packages
Package
Name: GraphicsMagick
Purl: pkg:rpm/suse/GraphicsMagick&distro=SUSE%20Package%20Hub%2015
Affected ranges
Type: ECOSYSTEM
Events:
