Bug 71573 - media-gfx/graphicsmagick 1.1.4 released (Security Fixes)
Bug#: 71573 Product:  Gentoo Security Version: unspecified Platform: All
OS/Version: Linux Status: RESOLVED Severity: normal Priority: P2
Resolution: FIXED Assigned To: security@gentoo.org Reported By: steffen.weber@gmail.com
Component: Vulnerabilities
URL:  http://www.graphicsmagick.org/
Summary: media-gfx/graphicsmagick 1.1.4 released (Security Fixes)
Keywords:  
Status Whiteboard: ~? [~] jaervosz
Opened: 2004-11-17 11:24 0000
Description:   Opened: 2004-11-17 11:24 0000
According to
http://sourceforge.net/mailarchive/forum.php?thread_id=5962178&forum_id=32142 a
few security issues have been fixed in this release.

For me, renaming the 1.1.3 ebuild worked.

Reproducible: Always
Steps to Reproduce:

------- Comment #1 From Carsten Lohrke 2004-11-17 14:06:12 0000 -------
>Security Fixes:
>      * Security fixes for AVI, BMP, DIB, and TIFF formats.
>      * LZW security fix (updated Windows sources to use zlib 1.2.2).

------- Comment #2 From Sune Kloppenborg Jeppesen 2004-11-17 14:24:50 0000 -------
Graphics please advise and bump as needed.

------- Comment #3 From Bryan Østergaard (RETIRED) 2004-11-17 19:37:32 0000 -------
I've added 1.1.4 to portage which fixes several security bugs including a
potential memory leak and stack overflow.

------- Comment #4 From Sune Kloppenborg Jeppesen 2004-11-17 22:08:41 0000 -------
ppc please mark graphicsmagick-1.1.4 ~ppc

------- Comment #5 From Daniel Black 2004-11-19 19:21:50 0000 -------
ppc keyword addded.

------- Comment #6 From Sune Kloppenborg Jeppesen 2004-11-19 22:42:22 0000 -------
Closing this witout GLSA (unstable)