graphicsmagick (1.4+really1.3.38+hg16728-1) unstable; urgency=high
authorLaszlo Boszormenyi (GCS) <gcs@debian.org>
Thu, 11 Aug 2022 21:50:27 +0000 (22:50 +0100)
committerLaszlo Boszormenyi (GCS) <gcs@debian.org>
Thu, 11 Aug 2022 21:50:27 +0000 (22:50 +0100)
commitaf7b00d03fc209c65fea8a8e47f4b9abe4b472f2
treed8b86c82fdb30a4b83d18a977cfdd601e4cd3246
parent57230cb3770b4aa157295ffc9c6ce75f100b4690
parent19b037e19be36e1b0ed394e6e8b9bd1ea05e95ce
graphicsmagick (1.4+really1.3.38+hg16728-1) unstable; urgency=high

  * Mercurial snapshot, fixing the following security issues:
    - ThrowLoggedException(): dereference after NULL check,
    - ReadJP2Image(): division by float zero,
    - MagickXMakeMagnifyImage(): division by zero,
    - ScaleImage(): resource leak,
    - GetLocaleMessageFromTag(): out of bounds read,
    - DrawPrimitive(): out of bounds access,
    - ReadOnePNGImage(): use of uninitialized value,
    - ReadMNGImage(): heap use after free in CloseBlob(),
    - ReadMNGImage(): indirect leak,
    - ReadOnePNGImage(): indirect leak in MagickMallocCleared().

[dgit import unpatched graphicsmagick 1.4+really1.3.38+hg16728-1]
55 files changed:
debian/Magick.pm
debian/README.Debian
debian/changelog
debian/control
debian/copyright
debian/graphicsmagick-imagemagick-compat.links
debian/graphicsmagick-libmagick-dev-compat.install
debian/graphicsmagick-libmagick-dev-compat.links
debian/graphicsmagick-libmagick-dev-compat.manpages
debian/graphicsmagick.docs
debian/graphicsmagick.install
debian/graphicsmagick.manpages
debian/graphicsmagick.menu
debian/graphicsmagick.mime
debian/libgraphics-magick-perl.install
debian/libgraphicsmagick++-q16-12.install
debian/libgraphicsmagick++-q16-12.symbols.32bit.in
debian/libgraphicsmagick++-q16-12.symbols.64bit.in
debian/libgraphicsmagick++-q16-12.symbols.alpha.disabled
debian/libgraphicsmagick++-q16-12.symbols.amd64.disabled
debian/libgraphicsmagick++-q16-12.symbols.arm.disabled
debian/libgraphicsmagick++-q16-12.symbols.armel.disabled
debian/libgraphicsmagick++-q16-12.symbols.common.in
debian/libgraphicsmagick++-q16-12.symbols.disabled
debian/libgraphicsmagick++-q16-12.symbols.hppa.disabled
debian/libgraphicsmagick++-q16-12.symbols.hppa.in
debian/libgraphicsmagick++-q16-12.symbols.i386.disabled
debian/libgraphicsmagick++-q16-12.symbols.ia64.disabled
debian/libgraphicsmagick++-q16-12.symbols.m68k.disabled
debian/libgraphicsmagick++-q16-12.symbols.mips.disabled
debian/libgraphicsmagick++-q16-12.symbols.mipsel.disabled
debian/libgraphicsmagick++-q16-12.symbols.powerpc.disabled
debian/libgraphicsmagick++-q16-12.symbols.s390.disabled
debian/libgraphicsmagick++-q16-12.symbols.sparc.disabled
debian/libgraphicsmagick++1-dev.dirs
debian/libgraphicsmagick++1-dev.install
debian/libgraphicsmagick++1-dev.links
debian/libgraphicsmagick-q16-3.install
debian/libgraphicsmagick-q16-3.symbols
debian/libgraphicsmagick1-dev.dirs
debian/libgraphicsmagick1-dev.install
debian/libgraphicsmagick1-dev.links
debian/patches/link-demos.diff
debian/patches/semaphore_O0_ppc64el.patch
debian/patches/series
debian/reference-new/PerlMagick/t/reference/ttf/annotate.miff.uu
debian/reference-new/PerlMagick/t/reference/ttf/label.miff.uu
debian/reference-new/PerlMagick/t/reference/ttf/read.miff.uu
debian/reference-new/PerlMagick/t/reference/wmf/ski.miff.uu
debian/rules
debian/source/format
debian/source/lintian-overrides
debian/upstream/metadata
debian/upstream/signing-key.asc
debian/watch