graphicsmagick (1.4+really1.3.36-1) unstable; urgency=high
authorLaszlo Boszormenyi (GCS) <gcs@debian.org>
Sun, 27 Dec 2020 06:44:36 +0000 (06:44 +0000)
committerLaszlo Boszormenyi (GCS) <gcs@debian.org>
Sun, 27 Dec 2020 06:44:36 +0000 (06:44 +0000)
commitdf3933e147d7388e7ae9f87e60223015fe0dcfe7
tree72529390c4bd9386546dbce4c294e68adf6096c2
parentb752cd63b772ddd4c7d988386fcde38965c366d9
parent31a965b7d148880cd57048ea2be8c8812d002d73
graphicsmagick (1.4+really1.3.36-1) unstable; urgency=high

  * New upstream release, fixing the following security issues:
    - update almost all of the remaining coders to use the resource-limited
      memory allocator,
    - ReadMPCImage(): heap-buffer-overflow read,
    - EdgeImage(): fix null pointer dereference if edge image failed to be
      created,
    - CompareImageCommand() and CompositeImageCommand(): fix memory leaks when
      an input image failed to be read,
    - fix several null pointer dereference if an image failed to be created,
    - Classify(): remove variables from function global scope that don't need
      outer scope,
    - ReadMIFFImage() and ReadMPCImage(): arbitrarily limit the number of
      header keywords to avoid DOS attempts.

[dgit import unpatched graphicsmagick 1.4+really1.3.36-1]
52 files changed:
debian/Magick.pm
debian/README.Debian
debian/changelog
debian/control
debian/copyright
debian/graphicsmagick-imagemagick-compat.links
debian/graphicsmagick-libmagick-dev-compat.install
debian/graphicsmagick-libmagick-dev-compat.links
debian/graphicsmagick-libmagick-dev-compat.manpages
debian/graphicsmagick.docs
debian/graphicsmagick.install
debian/graphicsmagick.manpages
debian/graphicsmagick.menu
debian/graphicsmagick.mime
debian/libgraphics-magick-perl.install
debian/libgraphicsmagick++-q16-12.install
debian/libgraphicsmagick++-q16-12.symbols.32bit.in
debian/libgraphicsmagick++-q16-12.symbols.64bit.in
debian/libgraphicsmagick++-q16-12.symbols.alpha.disabled
debian/libgraphicsmagick++-q16-12.symbols.amd64.disabled
debian/libgraphicsmagick++-q16-12.symbols.arm.disabled
debian/libgraphicsmagick++-q16-12.symbols.armel.disabled
debian/libgraphicsmagick++-q16-12.symbols.common.in
debian/libgraphicsmagick++-q16-12.symbols.disabled
debian/libgraphicsmagick++-q16-12.symbols.hppa.disabled
debian/libgraphicsmagick++-q16-12.symbols.hppa.in
debian/libgraphicsmagick++-q16-12.symbols.i386.disabled
debian/libgraphicsmagick++-q16-12.symbols.ia64.disabled
debian/libgraphicsmagick++-q16-12.symbols.m68k.disabled
debian/libgraphicsmagick++-q16-12.symbols.mips.disabled
debian/libgraphicsmagick++-q16-12.symbols.mipsel.disabled
debian/libgraphicsmagick++-q16-12.symbols.powerpc.disabled
debian/libgraphicsmagick++-q16-12.symbols.s390.disabled
debian/libgraphicsmagick++-q16-12.symbols.sparc.disabled
debian/libgraphicsmagick++1-dev.dirs
debian/libgraphicsmagick++1-dev.install
debian/libgraphicsmagick++1-dev.links
debian/libgraphicsmagick-q16-3.install
debian/libgraphicsmagick-q16-3.symbols
debian/libgraphicsmagick1-dev.dirs
debian/libgraphicsmagick1-dev.install
debian/libgraphicsmagick1-dev.links
debian/patches/link-demos.diff
debian/patches/semaphore_O0_ppc64el.patch
debian/patches/series
debian/reference-new/PerlMagick/t/reference/ttf/annotate.miff.uu
debian/reference-new/PerlMagick/t/reference/ttf/label.miff.uu
debian/reference-new/PerlMagick/t/reference/ttf/read.miff.uu
debian/reference-new/PerlMagick/t/reference/wmf/ski.miff.uu
debian/rules
debian/source/format
debian/watch