-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 21 Dec 2016 17:08:44 -0500 Source: imagemagick Binary: imagemagick imagemagick-dbg imagemagick-common imagemagick-doc libmagickcore5 libmagickcore5-extra libmagickcore-dev libmagickwand5 libmagickwand-dev libmagick++5 libmagick++-dev perlmagick Architecture: source amd64 all Version: 8:6.7.7.10-5+deb7u10 Distribution: wheezy-security Urgency: high Maintainer: ImageMagick Packaging Team <pkg-gmagick-im-team@lists.alioth.debian.org> Changed-By: Antoine Beaupré <anarcat@debian.org> Description: imagemagick - image manipulation programs imagemagick-common - image manipulation programs -- infrastructure imagemagick-dbg - debugging symbols for ImageMagick imagemagick-doc - document files of ImageMagick libmagick++-dev - object-oriented C++ interface to ImageMagick - development files libmagick++5 - object-oriented C++ interface to ImageMagick libmagickcore-dev - low-level image manipulation library - development files libmagickcore5 - low-level image manipulation library libmagickcore5-extra - low-level image manipulation library - extra codecs libmagickwand-dev - image manipulation library - development files libmagickwand5 - image manipulation library perlmagick - Perl interface to the ImageMagick graphics routines Closes: 840437 845195 845196 845198 845202 845206 845212 845213 845241 845242 845243 845244 845246 845634 848139 Changes: imagemagick (8:6.7.7.10-5+deb7u10) wheezy-security; urgency=high . * Non-maintainer upload by the LTS Security Team. * mogrify global buffer overflow (CVE-2016-7799) (Closes: #840437) * memory allocate failure in AcquireQuantumPixels (CVE-2016-8677) (Closes: #845206) * ImageMagick Convert Tiff Adobe Deflate Code Execution Vulnerability (CVE-2016-8707) (Closes: #848139) * memory allocation failure in AcquireMagickMemory (CVE-2016-8862, CVE-2016-8866) (Closes: #845634) * Heap buffer overflow in heap-buffer-overflow in IsPixelGray (CVE-2016-9556) (Closes: #845242) * null pointer passed as argument 2, which is declared to never be null (CVE-2016-9559) (Closes: #845243) * TIFF file buffer overflow (Closes: #845195) * Check return of write function (Closes: #845196) * Check validity of extend during TIFF file reading (Closes: #845198) * Better check for bufferoverflow for TIFF handling (Closes: #845202) * Fix out of bound read in viff file handling (Closes: #845212) * Suspend exception processing if there are too many exceptions (Closes: #845213) * Prevent fault in MSL interpreter (Closes: #845241) * Add check for invalid mat file (Closes: #845244) * mat file out of bound (Closes: #845246) Checksums-Sha1: 0794fe93beefce053c12ffd7718728aed5419905 3160 imagemagick_6.7.7.10-5+deb7u10.dsc 19f188271302b9ff8ab1de845a8d86ca85f022d8 201943 imagemagick_6.7.7.10-5+deb7u10.debian.tar.bz2 18ad4944e9b464ccfad882b9a8599068482b304c 288124 imagemagick_6.7.7.10-5+deb7u10_amd64.deb 29de97899ad048c47946f8638748625df4fba043 6310512 imagemagick-dbg_6.7.7.10-5+deb7u10_amd64.deb 8fec54b91da4f8fec791bddcdc023e23a12953b5 131494 imagemagick-common_6.7.7.10-5+deb7u10_all.deb e41d87389b3c4ee7a891227d4f1453bf85a1c148 5790212 imagemagick-doc_6.7.7.10-5+deb7u10_all.deb 61829ac1f56f071b185bf51462afd69a24b52876 2119092 libmagickcore5_6.7.7.10-5+deb7u10_amd64.deb 2870609aa93c8c71f2ab229faacf8989dd992a1d 167906 libmagickcore5-extra_6.7.7.10-5+deb7u10_amd64.deb 2fdf08fbeac4cb0b97fdb8e200fb51b5655212a4 1388998 libmagickcore-dev_6.7.7.10-5+deb7u10_amd64.deb 770cc914acaf30e7e6c869844214be06a41d00c3 464300 libmagickwand5_6.7.7.10-5+deb7u10_amd64.deb 2cf0f7834e6f500159317c967983ef6aed5199fd 546190 libmagickwand-dev_6.7.7.10-5+deb7u10_amd64.deb b05fcbb1115e85aa8646b9dc956f1d9ed531742a 239726 libmagick++5_6.7.7.10-5+deb7u10_amd64.deb 9d5f02046aff2b1c7197d54269e2d441a5ce5e2e 287788 libmagick++-dev_6.7.7.10-5+deb7u10_amd64.deb 718c015716589e2a3a60b4c30eb17e0280b72666 259290 perlmagick_6.7.7.10-5+deb7u10_amd64.deb Checksums-Sha256: b63cd7814767f053f690a036ebeaea743aaa61a099ed9a6b386bec0874621ce2 3160 imagemagick_6.7.7.10-5+deb7u10.dsc 97c60e802b9469fe733d2e4031ee5dc92fb73a099f433363caaecfe04ab75c27 201943 imagemagick_6.7.7.10-5+deb7u10.debian.tar.bz2 57510f323738ad5c3682426e7ca009ae23c042f492d26b37223e338ba86d1cb7 288124 imagemagick_6.7.7.10-5+deb7u10_amd64.deb 019301d5cd33267b9974768fe3277456d79d24bd2ebaf40ed73b4eaddb6cf39f 6310512 imagemagick-dbg_6.7.7.10-5+deb7u10_amd64.deb d8e93ee405d03c3c74519541eb52973386e2129cec78755196a43c10fe26621f 131494 imagemagick-common_6.7.7.10-5+deb7u10_all.deb ba13dcc45cca06604581d57dfdb0bbbf0f81bc3fd13c35fa7b5f2ab73c262c1a 5790212 imagemagick-doc_6.7.7.10-5+deb7u10_all.deb 38ae5579be742b2826bd060989c2f36641799df4e12e6bc70461eb157d937428 2119092 libmagickcore5_6.7.7.10-5+deb7u10_amd64.deb 9152fcfa31da838bff07de4748de383e1d83d7988e75ba90f57633d36ffe3f82 167906 libmagickcore5-extra_6.7.7.10-5+deb7u10_amd64.deb cbf0fe31e6bd6879263bfaaa1c05dfa8b9bb8adbf53321e4194df9f8896d6189 1388998 libmagickcore-dev_6.7.7.10-5+deb7u10_amd64.deb e3ee27218334db509fc3f7ce416ff67d50811208276bfd029012d299237e26d7 464300 libmagickwand5_6.7.7.10-5+deb7u10_amd64.deb 662d68fa0fe001878e1c9ecebfbe82fedf1d578df421a8c202234c807e9b600b 546190 libmagickwand-dev_6.7.7.10-5+deb7u10_amd64.deb 6798b99b2d60f703121006967454dbb4a9d0473516751478f78e54107ed26e6d 239726 libmagick++5_6.7.7.10-5+deb7u10_amd64.deb 93384b73ac00a12c38771b8fcf65b37d41ffed4a566aa3c703b4e67b6dd09d04 287788 libmagick++-dev_6.7.7.10-5+deb7u10_amd64.deb 59b3e83aa7fd08093ef3628f4c3ba466ed55f72672453500227af933bc170b0f 259290 perlmagick_6.7.7.10-5+deb7u10_amd64.deb Files: 5743db625b93bf1be59cc57cc65ae680 3160 graphics optional imagemagick_6.7.7.10-5+deb7u10.dsc 328ac2027b6fe6ded1ca59d70c3c5d49 201943 graphics optional imagemagick_6.7.7.10-5+deb7u10.debian.tar.bz2 30e9f399610991787a6483774eabbb3a 288124 graphics optional imagemagick_6.7.7.10-5+deb7u10_amd64.deb e1729c834932c88a5c2828c498ff1dc5 6310512 debug extra imagemagick-dbg_6.7.7.10-5+deb7u10_amd64.deb 923127734d16f50d7ef5af98e7cbc66b 131494 graphics optional imagemagick-common_6.7.7.10-5+deb7u10_all.deb 48e36e130b0341c28fd99725b6167ec9 5790212 doc optional imagemagick-doc_6.7.7.10-5+deb7u10_all.deb 1f82b07ea84a6c986b8bdcb6654557e5 2119092 libs optional libmagickcore5_6.7.7.10-5+deb7u10_amd64.deb 9558d0bcfe2195aee73afd47e490053c 167906 libs optional libmagickcore5-extra_6.7.7.10-5+deb7u10_amd64.deb d48cfcd0e721b264cc98a28ec363c881 1388998 libdevel optional libmagickcore-dev_6.7.7.10-5+deb7u10_amd64.deb 402d514b632fc7fb20453ab1ba7259b0 464300 libs optional libmagickwand5_6.7.7.10-5+deb7u10_amd64.deb 436b3ab851f9c9e5664a13fa2b017e64 546190 libdevel optional libmagickwand-dev_6.7.7.10-5+deb7u10_amd64.deb 60661d2a6b84f657f167fd75bc59aea2 239726 libs optional libmagick++5_6.7.7.10-5+deb7u10_amd64.deb cbf960414786fc96b8a42cc3cc512ea5 287788 libdevel optional libmagick++-dev_6.7.7.10-5+deb7u10_amd64.deb c9936bb132be5dddcb3a5db27e33a187 259290 perl optional perlmagick_6.7.7.10-5+deb7u10_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCAAGBQJYWy0YAAoJEHkhUlJ7dZIeHEkQAMT+2FsksLCv/WOOmnmyttHB v5aY59MJqnHYEvnE67pmnamOEkpASwXgIdainnFpP8sPXGmXQhB9UAEDw6MTngkQ LzcOHpCvTiR0ho25Dmrx80ICDb8IdtGaY6z7Ve4bDhDUBV24jGInh5Hq1OwBKUbI T6ni5TusvmShORSx7Wazq6WuQeBfLdmREsivIYOSpF62vui4lMAou2OjpblYcRFv Yb491bbRCbysFwnqvvwtOdzGgsgvWAYdZ8DFWKgv9shj64zuGDOjhrH3QcQNh6G7 XE44pmzD+CLEVywi8glEPJvh0vn63yNpK4cj3H3Jj2GyfRGIJith8jQxDggowEwN D8e81lExBDv8tIT6JSNcX/a7TzaorUN9x+EdFPHRLySRwyMNPpUmU0tvyWSxYi8f IFPhOkQtV8Ww1RlhRh+I14PEQO1E+Hc4Ay6/FI0V3izBd/KvIfrH8U+ZUVz6a173 Mmbwk/yg9+pjDD/og9+6i11lh6VzfAJmATlaEUtP8NsUqUxH4ldVtsuWtAmPGmM2 KdSF4ZWN7aS9vD5bR6x6Tj28Q8pCBi2H05TVjF0NUe0foBPfWkvCUe5t6CMFpjBF tmKu362J3YgD1jGfuNs6AQzI62frsg/rKAcyziVlN43cQn3mRem0I4rMq7yp095M pUjUW5GMpVe5DsZLlqar =m9o+ -----END PGP SIGNATURE-----