Fedora 24: GraphicsMagick Security Update 2017-fba331bb86
Summary
GraphicsMagick is a comprehensive image processing package which is initially
based on ImageMagick 5.5.2, but which has undergone significant re-work by
the GraphicsMagick Group to significantly improve the quality and performance
of the software.
New stable upstream release, primarily includes security fixes for
CVE-2017-10794, CVE-2017-10799, CVE-2017-10800 See also
http://www.graphicsmagick.org/NEWS.html#july-4-2017
[ 1 ] Bug #1467378 - CVE-2017-10800 GraphicsMagick: out of memory in ReadMATImage() function
https://bugzilla.redhat.com/show_bug.cgi?id=1467378
[ 2 ] Bug #1467372 - CVE-2017-10799 GraphicsMagick: out of memory in ReadDPXImage() function
https://bugzilla.redhat.com/show_bug.cgi?id=1467372
[ 3 ] Bug #1467655 - CVE-2017-10794 GraphicsMagick: buffer overflow in QuantumTransferMode
https://bugzilla.redhat.com/show_bug.cgi?id=1467655
su -c 'dnf upgrade GraphicsMagick' at the command line.
For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html
All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Change Log
References