summary |
shortlog | log |
commit |
commitdiff |
tree
first ⋅ prev ⋅ next
Laszlo Boszormenyi (GCS) [Sun, 27 Dec 2020 06:44:36 +0000 (06:44 +0000)]
graphicsmagick (1.4+really1.3.36-1) unstable; urgency=high
* New upstream release, fixing the following security issues:
- update almost all of the remaining coders to use the resource-limited
memory allocator,
- ReadMPCImage(): heap-buffer-overflow read,
- EdgeImage(): fix null pointer dereference if edge image failed to be
created,
- CompareImageCommand() and CompositeImageCommand(): fix memory leaks when
an input image failed to be read,
- fix several null pointer dereference if an image failed to be created,
- Classify(): remove variables from function global scope that don't need
outer scope,
- ReadMIFFImage() and ReadMPCImage(): arbitrarily limit the number of
header keywords to avoid DOS attempts.
[dgit import unpatched graphicsmagick 1.4+really1.3.36-1]
Laszlo Boszormenyi (GCS) [Sun, 27 Dec 2020 06:44:36 +0000 (06:44 +0000)]
Import graphicsmagick_1.4+really1.3.36.orig.tar.xz
[dgit import orig graphicsmagick_1.4+really1.3.36.orig.tar.xz]
Laszlo Boszormenyi (GCS) [Sun, 27 Dec 2020 06:44:36 +0000 (06:44 +0000)]
Import graphicsmagick_1.4+really1.3.36-1.debian.tar.xz
[dgit import tarball graphicsmagick 1.4+really1.3.36-1 graphicsmagick_1.4+really1.3.36-1.debian.tar.xz]