Skip to content
GitLab
Explore
Sign in
Register
Commits on Source (2)
CVE-2019-19952,imagemagick: Jessie is not affected.
· 40aac991
Markus Koschany
authored
Dec 26, 2019
Instead of freeing mng_info, in Jessie an exception is thrown.
40aac991
Add imagemagick to dla-needed.txt
· 13d399b4
Markus Koschany
authored
Dec 26, 2019
13d399b4
Show whitespace changes
Inline
Side-by-side
data/CVE/list
View file @
13d399b4
...
...
@@ -120,6 +120,7 @@ CVE-2019-19952 (In ImageMagick 7.0.9-7 Q16, there is a use-after-free in the fun
- imagemagick <unfixed> (low)
[buster] - imagemagick <no-dsa> (Minor issue)
[stretch] - imagemagick <no-dsa> (Minor issue)
[jessie] - imagemagick <not-affected> (vulnerable code is not present)
NOTE: https://github.com/ImageMagick/ImageMagick/issues/1791
NOTE: https://github.com/ImageMagick/ImageMagick/commit/916d7bbd2c66a286d379dbd94bc6035c8fab937c (7.x)
NOTE: https://github.com/ImageMagick/ImageMagick6/commit/7ef923841437bb57bd9b55fc0bf40ddc99b93c2b (6.x)
data/dla-needed.txt
View file @
13d399b4
...
...
@@ -31,6 +31,8 @@ ibus (Emilio)
NOTE: 20191210: See https://bugs.debian.org/941018
NOTE: 20191210: See https://gitlab.gnome.org/GNOME/glib/merge_requests/1176
--
imagemagick
--
intel-microcode (Markus Koschany)
NOTE: 20191218: Should be based on DSA-4565-2
--
...
...