Summary: | <media-gfx/graphicsmagick-1.3.24: SVG converting issue resulting in DoS | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Agostino Sarubbo <ago> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED DUPLICATE | ||
Severity: | minor | CC: | graphics+disabled, tb |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://bugzilla.redhat.com/show_bug.cgi?id=1333417 | ||
Whiteboard: | B3 [glsa?] | ||
Package list: | Runtime testing required: | --- |
Description
Agostino Sarubbo
2016-05-06 08:44:23 UTC
6.9.4-5 and 7.0.1-7 have been released upstream and contain fixes related to this. Given the severity of these imagemagick issues I think we're handling them too slowly. Please bump asap and start stabilization. sorry about my latest comment, this belongs to another bug report (but I think this one will be also fixed by bumping to the latest version). magick/render.c is not present in media-gfx/imagemagick. Reassigned under the proper package. The OSS mailing list has discrepancies regarding the proper package as well. *** This bug has been marked as a duplicate of bug 581958 *** |