Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-03-02 Thread Bastien ROUCARIES
Sorry to all we are affected by 1947, commit 43a7754127073ebf0dce2b59cb370c27ae5fbd58 Author: cristy cristy@aa41f4f7-0bf4-0310-aa73-e5a19afd5a74 Date: Sun Feb 16 21:48:05 2014 + Link are incomplete. Will fix asap On Fri, Feb 28, 2014 at 11:20 AM, Bastien ROUCARIES

Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-03-02 Thread Bastien ROUCARIES
Corrected waiting a mentors On Sun, Mar 2, 2014 at 8:57 AM, Bastien ROUCARIES roucaries.bastien+imagemag...@gmail.com wrote: Sorry to all we are affected by 1947, commit 43a7754127073ebf0dce2b59cb370c27ae5fbd58 Author: cristy cristy@aa41f4f7-0bf4-0310-aa73-e5a19afd5a74 Date: Sun Feb 16

Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-02-28 Thread Bastien ROUCARIES
We are not affected by CVE-2014-1947: but by CVE-2014-2030 On Thu, Feb 27, 2014 at 2:45 PM, Moritz Muehlenhoff j...@inutil.org wrote: Package: imagemagick Severity: grave Tags: security Justification: user security hole The CVE assignments are a bit tricky, please see

Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-02-28 Thread Bastien ROUCARIES
We are affectés by another buffer overflow that upstream call 1947... Will add patch soon I am really confused Le 28 févr. 2014 11:20, Bastien ROUCARIES roucaries.bastien+imagemag...@gmail.com a écrit : We are not affected by CVE-2014-1947: but by CVE-2014-2030 On Thu, Feb 27, 2014 at 2:45

Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-02-27 Thread Moritz Muehlenhoff
Package: imagemagick Severity: grave Tags: security Justification: user security hole The CVE assignments are a bit tricky, please see http://www.openwall.com/lists/oss-security/2014/02/12/2 for the thread on oss-security. CVE-2014-1958 http://trac.imagemagick.org/changeset/14801

Bug#740250: imagemagick: CVE-2014-1947 CVE-2014-1958 CVE-2014-2030

2014-02-27 Thread Bastien ROUCARIES
On Thu, Feb 27, 2014 at 2:45 PM, Moritz Muehlenhoff j...@inutil.org wrote: Package: imagemagick Severity: grave Tags: security Justification: user security hole The CVE assignments are a bit tricky, please see http://www.openwall.com/lists/oss-security/2014/02/12/2 for the thread on