Bug#916721: graphicsmagick: CVE-2018-20184

2018-12-26 Thread Hugo Lefeuvre
Hi, upstream patch contains unrelated code refactoring (deduplication of the _TargaInfo structure). I have trimmed it down so it contains only necessary changes, you can find the modified patch in attachement (it's only a few lines long). cheers, Hugo -- Hugo Lefeuvre (hle)

Bug#916721: graphicsmagick: CVE-2018-20184

2018-12-17 Thread Salvatore Bonaccorso
Source: graphicsmagick Version: 1.3.31-1 Severity: important Tags: patch security upstream Forwarded: https://sourceforge.net/p/graphicsmagick/bugs/583/ Hi, The following vulnerability was published for graphicsmagick. CVE-2018-20184[0]: | In GraphicsMagick 1.4 snapshot-20181209 Q8, there is a