[CLSA-2022:1654802345] Fix CVE(s): CVE-2022-28463, CVE-2020-27760
Type:
security
Severity:
Important
Release date:
2022-06-09 19:19:05 UTC
Description:
* SECURITY UPDATE: Division by zero - debian/patches/CVE-2020-27760.patch: Fix divisions by zeros in magick/enhance.c - CVE-2020-27760 * SECURITY UPDATE: Heap-based buffer overflow - debian/patches/CVE-2022-28463.patch: Fix buffer overflow - CVE-2022-28463 * Fix several issues with undefined behavior: - debian/patches/fix-potential-divide-by-zero-in-svg.patch: Fix potential division by zero in coders/svg.c - debian/patches/fix-out-of-range-value-in-txt.patch: Fix undefined behavior in the form of values outside the range of 'unsigned long long' type in coders/text.c - debian/patches/fix-out-of-range-value-in-scale-to-quantum.patch: Fix undefined behavior in the form of values outside the range of 'unsigned short' type in magic/quantum-private.h - debian/patches/fix-shift-value-overflow-in-bmp.patch: Fix overflow on value shift in coders/bmp.c
Updated packages:
  • imagemagick_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:35bf5148dd0dfb7de64007551a029345afeff899
  • imagemagick-6.q16_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:0f9ab8df86b027b7294c401845abbb798adc77bb
  • imagemagick-common_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:845739a58818301572a7fcaa6103c7fca75aa431
  • imagemagick-doc_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:6a71dc9c5c442b49c50937148c648ccaedb2d894
  • libimage-magick-perl_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:3347d010382c748783c546e3e94e8e2d46023a68
  • libimage-magick-q16-perl_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:88ea8a87f515e95704d220bde3b9916a22a35f97
  • libmagick++-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:d76863d4b183302c7d05e46e0c6c4799b0dff56a
  • libmagick++-6.q16-5v5_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:c09fe4e8f791cc5634eb4cfbd4c94d401e13f787
  • libmagick++-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:7609cae0759832275e4f7624e4e3aeab2f0f7e77
  • libmagick++-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:64f30cf0369df730b7288b3bd38580b5ab2f8823
  • libmagickcore-6-arch-config_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:48f18f26302f5c71fc692042d2707634fe525912
  • libmagickcore-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:9c769dcfd48181dde0be71a8ce54b2f25fbe8f51
  • libmagickcore-6.q16-2_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:9a84988b8b29296e6317f45938af71762cb15cf4
  • libmagickcore-6.q16-2-extra_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:7f10473f21fe758fe6d59cf412e96ccef6821965
  • libmagickcore-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:5ecb0aa7c3bcfca9f5a1e2759044dd783d051466
  • libmagickcore-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:b692b25a1c1342d5ea20397f82d906a911f57a4d
  • libmagickwand-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:f5b02c19deed62d76c733d2d04a3cbd557213d6a
  • libmagickwand-6.q16-2_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:f332d0e449cd99f6d01e737b6995c554537699e0
  • libmagickwand-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_amd64.deb
    sha:7670e0a739b49ce394f303aef4794920cb53070f
  • libmagickwand-dev_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:ba6e9ef5e29f0d60d946f00b62a619715e9de3a4
  • perlmagick_6.8.9.9-7ubuntu5.17+tuxcare.els3_all.deb
    sha:1588c80537daa6ee613d5c3329efaaf31ae2120d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.