~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
PublicDateAtUSN: 2017-04-30
Candidate: CVE-2017-8343
PublicDate: 2017-04-30
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8343
 https://github.com/ImageMagick/ImageMagick/issues/444
 http://www.ubuntu.com/usn/usn-3302-1
Description:
 In ImageMagick 7.0.5-5, the ReadAAIImage function in aai.c allows attackers
 to cause a denial of service (memory leak) via a crafted file.
Ubuntu-Description:
Notes:
 mdeslaur> This is 0193-Fix-CVE-2017-8343.patch
Bugs:
Priority: negligible
Discovered-by:
Assigned-to:

Patches_imagemagick:
upstream_imagemagick: needs-triage
precise_imagemagick: ignored (reached end-of-life)
precise/esm_imagemagick: DNE (precise was needs-triage)
trusty_imagemagick: released (8:6.7.7.10-6ubuntu3.7)
vivid/stable-phone-overlay_imagemagick: DNE
vivid/ubuntu-core_imagemagick: DNE
xenial_imagemagick: released (8:6.8.9.9-7ubuntu5.7)
yakkety_imagemagick: released (8:6.8.9.9-7ubuntu8.6)
zesty_imagemagick: released (8:6.9.7.4+dfsg-3ubuntu1.1)
devel_imagemagick: released (8:6.9.7.4+dfsg-9ubuntu1)