Bug#833003: [Pkg-gmagick-im-team] Bug#833003: CVE-2016-5688 WPG file issue

2016-07-30 Thread Bastien ROUCARIES
This is three patch instead of one commit 5be8c8595e23af7cd1b39a4135d2f9d7344f4520 Author: Cristy Date: Wed May 18 08:11:53 2016 -0400 Fix allocation of memory for CVE-2016-5688 (cherry picked from commit f7c2e897c0f990d663026055a2b40e1be7e16ede)

Bug#833003: CVE-2016-5688 WPG file issue

2016-07-30 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Several bugs in the WPG parser could lead to a heap overflow and random invalid memory writes. These bugs only seem to appear when a memory limit is set.