Release Info

Advisory: CLSA-2024:1732555093

OS: Ubuntu 16.04 ELS

Public date: 2024-11-25 12:18:15

Project: imagemagick

Version: 8:6.8.9.9-7ubuntu5.17+tuxcare.els20

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2024-1732555093.html

Changelog

* SECURITY UPDATE: Undefined behavior due to values outside range in quantum.h - debian/patches/CVE-2020-27767.patch: Fix quantum.h to include float.h to handle min and max values for Quantum type - debian/patches/CVE-2020-27767-1.patch: Fix ClampToQuantum function to handle negative values correctly and prevent buffer overflow in quantum- import.c - CVE-2020-27767

Update

Update command: apt-get update apt-get --only-upgrade install imagemagick*

Packages list

imagemagick_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb imagemagick-6.q16_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb imagemagick-common_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb imagemagick-doc_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libimage-magick-perl_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libimage-magick-q16-perl_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagick++-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libmagick++-6.q16-5v5_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagick++-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagick++-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libmagickcore-6-arch-config_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickcore-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libmagickcore-6.q16-2_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickcore-6.q16-2-extra_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickcore-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickcore-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libmagickwand-6-headers_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb libmagickwand-6.q16-2_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickwand-6.q16-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_amd64.deb libmagickwand-dev_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb perlmagick_6.8.9.9-7ubuntu5.17+tuxcare.els20_all.deb

CVEs

CVE-2020-27769
CVE-2020-27767