Bug#833101: DOS by not releasing memory

2016-07-31 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Imagemagick version prior of february 2016 does not correctly release memory There is a resource leak in AcquireVirtualMemory resulting in major

Bug#833099: CVE-2016-6491 buffer overflow

2016-07-31 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org https://github.com/ImageMagick/ImageMagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b

Bug#831034: imagemagick: CVE-2016-5841 CVE-2016-5842

2016-07-31 Thread Bastien ROUCARIES
commit 3b7c0268e5339014f28abd620f4395827abc7ef4 Author: Cristy Date: Tue Jun 21 21:13:18 2016 -0400 Improve checking of EXIF profile to prevent integer overflow This fix CVE-2016-5841 and CVE-2016-5842 bug-debian:

Bug#833044: CVE-2016-5691 DCM file bug lack of validation of pixel.red, pixel.green, and pixel.blue

2016-07-31 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org lack of validation of pixel.red, pixel.green, and pixel.blue error in the for statement in the "Compute pixel scaling table" part of the ReadDCMImage

Bug#833043: CVE-2016-5690

2016-07-31 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org error in the for statement in the "Compute pixel scaling table" part of the ReadDCMImage function This is the same fix upstream than CVE-2016-5689

Bug#833042: CVE-2016-5689 lack of required NULL pointer checks in the DCM parser

2016-07-31 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security control: fixed -1 6.9.4-3 X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org CVE-2016-5689 lack of required NULL pointer checks in the DCM parser

Bug#833003: [Pkg-gmagick-im-team] Bug#833003: CVE-2016-5688 WPG file issue

2016-07-30 Thread Bastien ROUCARIES
ximum for wpg file This is a partial fix of CVE-2016-5688 bug-debian: https://bugs.debian.org/833003 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/fc43974d34318c834fbf78570ca1a3764ed8c7d7 On Sat, Jul 30, 2016 at 8:22 PM, Bastien ROUCARIES <roucaries.bas

Bug#833003: CVE-2016-5688 WPG file issue

2016-07-30 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Several bugs in the WPG parser could lead to a heap overflow and random invalid memory writes. These bugs only seem to appear when a memory limit is set.

Bug#832968: CVE-2016-5010: tiff file Out-of-bounds read

2016-07-30 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org CVE-2016-5010: tiff file Out-of-bounds read

Bug#832890: [Pkg-gmagick-im-team] Bug#832890: CVE-2016-5687

2016-07-29 Thread Bastien ROUCARIES
bug-debian: https://bugs.debian.org/832890 On Fri, Jul 29, 2016 at 12:22 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Package: src:imagemagick > Version: 8:6.7.7.10-5 > Severity: grave > Tags: patch security > X-Debbugs-CC: secure-testing-t...@lists.alioth.

Bug#832944: Acknowledgement (Avoid a DOS for DDS file)

2016-07-29 Thread Bastien ROUCARIES
uthor: cristy Date: Sun Jan 11 19:18:02 2015 + Fix a DOS for DDS file (cherry picked from commit 3ab016764c7f787829d9065440d86f5609765110) This is a partial fix bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26861

Bug#832944: Avoid a DOS for DDS file

2016-07-29 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26861

Bug#832942: [Pkg-gmagick-im-team] Bug#832942: DDS file security fix

2016-07-29 Thread Bastien ROUCARIES
ImageMagick/commit/504ada82b6fa38a30c846c1c29116af7290decb2 On Fri, Jul 29, 2016 at 10:26 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Package: imagemagick > Version: 8:6.7.7.10-5 > Severity: grave > Tags: patch security > X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.o

Bug#832942: DDS file security fix

2016-07-29 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Multiple DDS file vulnaribilty

Bug#832506: Fix out of bound in quantum handling

2016-07-29 Thread Bastien ROUCARIES
ub.com/ImageMagick/ImageMagick/commit/b5ed738f8060266bf4ae521f7e3ed145aa4498a3 On Tue, Jul 26, 2016 at 10:45 AM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Package: imagemagick > Version: 8:6.7.7.10-5 > Severity: grave > Tags: patch security > X-Debbugs-CC: secure-testing-

Bug#832890: CVE-2016-5687

2016-07-29 Thread Bastien ROUCARIES
Package: src:imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org An out of bounds memory read in the VerticalFilter() function can be triggered by a malformed DDS file.

Bug#832888: CVE-2016-4564

2016-07-29 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org The DrawImage function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 makes an incorrect function call in attempting to locate the

Bug#832887: CVE-2016-4563 The TraceStrokePolygon function in MagickCore/draw.c

2016-07-29 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org control: fixed -1 8:6.7.7.10-5+deb7u7 The TraceStrokePolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles the

Bug#832885: CVE-2016-4562

2016-07-29 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org The DrawDashPolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles calculations of certain vertices integer

Bug#832455: [Pkg-gmagick-im-team] Bug#832455: Fix a off-by-one error leading to segfault

2016-07-28 Thread Bastien ROUCARIES
control: Severity -1 grave control: Tags -1 + patch security control: X-Debbugs-CC -1 secure-testing-t...@lists.alioth.debian.org On Mon, Jul 25, 2016 at 10:05 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > control: Severity grave > control: Tags + patch security

Bug#832793: Fix a SIGABRT in pdb file handling

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix a SIGABRT in pdb file handling bug: https://github.com/ImageMagick/ImageMagick/issues/148 bug-ubuntu:

Bug#832791: Fix an out of bound access in pdb file handling

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix an out of bound access in pdb file handling bug: https://github.com/ImageMagick/ImageMagick/issues/143 origin: upstream,

Bug#832789: Fix SEGV reported in profile handling

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org bug:https://github.com/ImageMagick/ImageMagick/issues/130 Origin: upstream,

Bug#832787: Fix an out of bound in psd file

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix an out of bound in psd file Origin: upstream,

Bug#832785: Fix an out of bound in generic decoder

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix an out of bound in generic decoder Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/430403b0029b37decf216d57f810899cab2317dd

Bug#832783: Fix an out of bound in generic decoder

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix an out of bound in generic decoder Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/430403b0029b37decf216d57f810899cab2317dd

Bug#832780: Fix a wpg file out of bound

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix a wpg file out of bound Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/bef1e4f637d8f665bc133a9c6d30df08d983bc3a bug:

Bug#832776: Fix handling of psd file

2016-07-28 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Fix handling of psd file Added check for out of bounds read (https://github.com/ImageMagick/ImageMagick/issues/109). [Upstream commit is

Bug#832633: Fix a pbd file out of bound access

2016-07-27 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org This is a partial bug fix Bug: https://github.com/ImageMagick/ImageMagick/issues/107 origin: upstream,

Bug#832506: Fix out of bound in quantum handling

2016-07-26 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org commit 5c14bce1ab591f21bfa510b710f2473c801ce3f4 Author: Cristy Date: Sat Jan 30 09:37:10 2016 -0500 Fix out of bound in

Bug#832505: xcf out of bound acess

2016-07-26 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Bug: https://github.com/ImageMagick/ImageMagick/issues/104 Bug: https://github.com/ImageMagick/ImageMagick/issues/103 Bug-ubuntu:

Bug#832504: Fix an out of bound in xcf file handling

2016-07-26 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Bug: https://github.com/ImageMagick/ImageMagick/issues/104 Bug: https://github.com/ImageMagick/ImageMagick/issues/103 Bug-ubuntu:

Bug#832482: WPG file security bug

2016-07-25 Thread Bastien ROUCARIES
commit 4042a65de0e0bc4402bdb63538bbb54587cbfb7a Author: dirk Date: Sat Feb 6 12:10:10 2016 +0100 Out of bound in wpg file This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/102 origin: upstream,

Bug#832483: Fix out of bound for viff file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Bug: https://github.com/ImageMagick/ImageMagick/issues/99 Origin: upstream,

Bug#832482: WPG file security bug

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Out of bound in wpg file This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/102 origin: upstream,

Bug#832480: Fix head buffer overflow in psd file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org bug: https://github.com/ImageMagick/ImageMagick/issues/98 origin: upstream,

Bug#832478: [Pkg-gmagick-im-team] Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
/imagemagick/+bug/1537420 bug-debian: https://bugs.debian.org/823750 On Mon, Jul 25, 2016 at 11:30 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Package: imagemagick > Version: 8:6.7.7.10-5 > Severity: grave > Tags: patch security > X-Debbugs

Bug#832478: [Pkg-gmagick-im-team] Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
outofbound-LP1537420.meta Description: Binary data

Bug#832478: Fix meta file outofbound access

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/96 origin: upstream,

Bug#832475: Fix a outofbound access for psd file

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a outofbound access for psd file Added extra check to fix https://github.com/ImageMagick/ImageMagick/issues/93 origin:

Bug#832474: Fix a heap buffer overflow in psd file handling

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a heap buffer overflow in psd file handling Bug: https://github.com/ImageMagick/ImageMagick/issues/92. Origin:

Bug#828886: lintian: error on .js file even though its .min.js co-exist in the same folder

2016-07-25 Thread Bastien ROUCARIES
On Tue, Jun 28, 2016 at 9:19 PM, Andrew Lee wrote: > Package: lintian > Version: 2.5.44~bpo8+1 > Severity: normal > > Dear Maintainer, > > I am packaging a new package ruby-flot-rails. Lintian complains > source-is-missing error on it's .js files. But it has both .js and >

Bug#832469: HDR file overflow

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 bug: https://github.com/ImageMagick/ImageMagick/issues/90 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537213

Bug#832469: HDR file overflow

2016-07-25 Thread Bastien ROUCARIES
Test case

Bug#827941: more hash sum of lena image

2016-07-25 Thread Bastien ROUCARIES
control: tags -1 + moreinfo On Thu, Jun 23, 2016 at 5:44 PM, Jakub Wilk wrote: > * Lumin , 2016-06-23, 01:50: >> >> $ dpkg -L python-matplotlib-data | grep lena | xargs sha224sum > > > The current Lintian code requires SHA-256 digest, not SHA-224. > >

Bug#832467: Fix multiple out of bound problem

2016-07-25 Thread Bastien ROUCARIES
commit 033c060a1ec8bf8df6b863208a08eaa8edc0656e Author: Cristy Date: Thu Jan 14 19:55:03 2016 -0500 Fix out of bound access in sun file This is a partial fix for sun file. Bug: https://github.com/ImageMagick/ImageMagick/issues/81 Bug-ubuntu:

Bug#832467: Fix multiple out of bound problem

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split 823750 Fix an out of bound access in rle file. Fix an out of bound access in pict file. Fix an out of bound access in viff file.

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/832465 Origin: upstream,

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Test case

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/832465 Origin: upstream,

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26857 Bug-debian: https://bugs.debian.org/823750 Origin: upstream,

Bug#832465: SUN file ABRT signal

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug:

Bug#832464: [Pkg-gmagick-im-team] Bug#832464: SUN file handling

2016-07-25 Thread Bastien ROUCARIES
/bd96074b254c6607a0f7731e59f923ad19d5a46d, https://github.com/ImageMagick/ImageMagick/commit/450bd716ed3b9186dd10f9e60f630a3d9eeea2a4 On Mon, Jul 25, 2016 at 10:09 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Package: imagemagick > Version: 8:6.7.7.10-5 > Severity: grave > Tags: patch se

Bug#832464: [Pkg-gmagick-im-team] Bug#832464: SUN file handling

2016-07-25 Thread Bastien ROUCARIES
Test cases

Bug#832464: SUN file handling

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a buffer overflow in sun file handling Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26838 Origin: Upstream,

Bug#832455: [Pkg-gmagick-im-team] Bug#832455: Fix a off-by-one error leading to segfault

2016-07-25 Thread Bastien ROUCARIES
control: Severity grave control: Tags + patch security control: X-Debbugs-CC secure-testing-t...@lists.alioth.debian.org

Bug#832461: Fixed check for the number of pixels that will be allocated.

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix rle file handling for corrupted file. Origin: upstream,

Bug#832457: [Pkg-gmagick-im-team] Bug#832457: Bug#832457: Out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels

2016-07-25 Thread Bastien ROUCARIES
control: retitle -1 Fix psd file handling Rewrite reading pixel values for psd file It fix psd file handling for corrupted file. This is partial fix. Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/280215b9936d145dd5ee91403738ccce1333cab1 Bug-ubuntu:

Bug#832457: [Pkg-gmagick-im-team] Bug#832457: Out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels

2016-07-25 Thread Bastien ROUCARIES
Add test cases outofbound-1-LP1533442.psd Description: application/photoshop outofbound-2-LP1533442.psd Description: application/photoshop outofbound-3-LP1533442.psd Description: application/photoshop outofbound-4-LP1533442.psd Description: application/photoshop

Bug#832457: [Pkg-gmagick-im-team] Bug#832457: Out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels

2016-07-25 Thread Bastien ROUCARIES
://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533442 Bug: https://github.com/ImageMagick/ImageMagick/issues/83 Bug-debian: https://bugs.debian.org/832457 On Mon, Jul 25, 2016 at 9:37 PM, Bastien ROUCARIES <roucaries.bast...@gmail.com> wrote: > Fixed overflow in psd file handling > > &g

Bug#832457: [Pkg-gmagick-im-team] Bug#832457: Out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels

2016-07-25 Thread Bastien ROUCARIES
Fixed overflow in psd file handling It fix psd file handling for corrupted file. This is partial fix. Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/6f1879d498bcc5cce12fe0c5decb8dbc0f608e5d Bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533442

Bug#832457: Out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Added check for bit depth 1 for PSD file This is a partial fix of out-of-bounds read in coders/psd.c:797 ReadPSDChannelPixels It fix psd

Bug#832455: Fix a off-by-one error leading to segfault

2016-07-25 Thread Bastien ROUCARIES
Package: imagemagick Version: 8:6.7.7.10-5 Severity: grave Tags: patch security X-Debbugs-CC: secure-testing-t...@lists.alioth.debian.org Split of 823750 Fix a off-by-one error leading to segfault Instead of using custom buggy memcpy use built in. Origin: upstream,

Bug#818203: imagemagick: diff for NMU version 8:6.8.9.9-7.2

2016-07-25 Thread Bastien ROUCARIES
Thanks baby take time. Will incorporate On Mon, Jun 27, 2016 at 3:25 PM, Mattia Rizzolo wrote: > Control: tags 818203 + patch > Control: tags 818203 + pending > > Dear maintainer, > > I've prepared an NMU for imagemagick (versioned as 8:6.8.9.9-7.2) and > uploaded it to

Bug#826713: The keys in the keyrings don't fall under any copyright.

2016-06-13 Thread Bastien ROUCARIES
On Thu, Jun 9, 2016 at 8:37 AM, Mathieu Malaterre wrote: > Hi Bastien, > > On Wed, Jun 8, 2016 at 11:23 PM, Daniel Kahn Gillmor > wrote: > > On Wed 2016-06-08 04:57:21 -0400, Mathieu Malaterre wrote: > >> Package: debian-keyring > >> Version: 2016.04.22

Bug#823750: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1553360

2016-05-17 Thread Bastien ROUCARIES
Not a concern after previous patches

Bug#823750: Fix a SIGABRT in pdb file handling

2016-05-17 Thread Bastien ROUCARIES
Fix a SIGABRT in pdb file handling bug: https://github.com/ImageMagick/ImageMagick/issues/148 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1556273 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/53c1dcd34bed85181b901bfce1a2322f85a59472

Bug#823750: Fix an out of bound access in pdb file handling

2016-05-17 Thread Bastien ROUCARIES
bug: https://github.com/ImageMagick/ImageMagick/issues/143 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/424d40ebfcde48bb872eba75179d3d73704fdf1f bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1553366 bug-debian:

Bug#823750: Already fixed

2016-05-17 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1553366

Bug#823750: Fix an out of bound in mat file handling

2016-05-17 Thread Bastien ROUCARIES
Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/1bc1fd0ff8c555841c78829217ac81fa0598255d bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1545183 bug-debian: https://bugs.debian.org/823750

Bug#823750: Another out of bound

2016-05-16 Thread Bastien ROUCARIES
Fix an out of bound in psd file Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/533ea3b9047c67f9af49703de672f6c2e443f747 bug: https://github.com/ImageMagick/ImageMagick/issues/128 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1545180

Bug#823750: Fix an out of bound in generic decoder

2016-05-16 Thread Bastien ROUCARIES
Fix an out of bound in generic decoder Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/430403b0029b37decf216d57f810899cab2317dd bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542785 bug-debian: https://bugs.debian.org/823750 bug:

Bug#823750: LP1542125

2016-05-16 Thread Bastien ROUCARIES
Fixed by previous commit

Bug#823750: New bug

2016-05-16 Thread Bastien ROUCARIES
Fix a wpg file out of bound Origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/bef1e4f637d8f665bc133a9c6d30df08d983bc3a bug: https://github.com/ImageMagick/ImageMagick/issues/120 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542114

Bug#823750: Already fixed

2016-05-16 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542112 is fixed by previous commit

Bug#823750: Not a concern

2016-05-16 Thread Bastien ROUCARIES
Because we do not enable accelerate we are not affected by https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542111

Bug#823542: [Pkg-gmagick-im-team] Bug#823542: imagemagick-common: please mitigate CVE-2016-3714, remote arbitrary code execution during handling of delegates

2016-05-09 Thread Bastien Roucaries
Le 5 mai 2016 22:04:13 GMT+02:00, Simon McVittie a écrit : >Package: imagemagick-common >Version: 8:6.8.9.9-7+b2 >Severity: grave >Tags: security >Justification: user security hole Could you Walt about nmu. I have more patches... >I'm sure you're already aware of

Bug#823750: Fixed by previous commit

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542107 was already fixed

Bug#823750: Already fixed by previous commit

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539067 is already fixed

Bug#823750: Already fixed by previous commit

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1542106

Bug#823750: psd file but of bound

2016-05-08 Thread Bastien ROUCARIES
commit 6c08bf343218433229ad8d1c0551ca18e8ecbe79 Author: dirk Date: Tue Feb 2 21:36:50 2016 +0100 Fix handling of psd file Added check for out of bounds read (https://github.com/ImageMagick/ImageMagick/issues/109). [Upstream commit is misleading it is for

Bug#823750: LP bug is fixed by previous patches

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539065

Bug#823750: PDB file out of bound

2016-05-08 Thread Bastien ROUCARIES
ommit d6973a948210145f8f3f452ccbb23131431786ff Author: Cristy Date: Sat Feb 20 09:26:04 2016 -0500 Fix a pbd file out of bound access This is a partial bug fix origin: upstream,

Bug#823750: Stable not affected by https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539059

2016-05-08 Thread Bastien ROUCARIES
Not affected because size is correct

Bug#823750: Quantum library out of bound

2016-05-08 Thread Bastien ROUCARIES
commit 339e91b56a8a368092d9e77c280fdf1561430103 Author: Cristy Date: Sat Jan 30 09:37:10 2016 -0500 Fix out of bound in quantum handling Bug: https://github.com/ImageMagick/ImageMagick/issues/105 bug-ubuntu:

Bug#823750: xcf file out of bound

2016-05-08 Thread Bastien ROUCARIES
ommit 9e76522e95ba1c14b11bb6973f3cbf469277c7c6 Author: Cristy Date: Sun May 8 21:50:10 2016 +0200 Fix an out of bound in xcf file handling Bug: https://github.com/ImageMagick/ImageMagick/issues/104 Bug:

Bug#823750: Viff file out of bound

2016-05-08 Thread Bastien ROUCARIES
commit 316abce4e8947faa7a0f07455d8d1cf297e09d83 Author: Cristy Date: Sun Jan 24 17:42:22 2016 -0500 Fix out of bound for viff file Bug: https://github.com/ImageMagick/ImageMagick/issues/99 Origin: upstream,

Bug#823750: wpg file out of bound

2016-05-08 Thread Bastien ROUCARIES
ommit a7b98d2a9a402fe7c11935641040e80056eed1f0 Author: dirk Date: Sat Feb 6 12:10:10 2016 +0100 Out of bound in wpg file This is a partial fix bug: https://github.com/ImageMagick/ImageMagick/issues/102 origin: upstream,

Bug#823750: PSD file overflow

2016-05-08 Thread Bastien ROUCARIES
Fixed head buffer overflow in psd file bug: https://github.com/ImageMagick/ImageMagick/issues/98 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/5f16640725b1225e6337c62526e6577f0f88edb8 bug-ubuntu:

Bug#823750: Previous bug concern stable but fixed in previous patches

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537423 is fixed in previous patches about pbm

Bug#823750: Not concern for stable

2016-05-08 Thread Bastien ROUCARIES
This does not crash stable https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537423

Bug#823750: Sun problem fixed by previous patches

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537421 is fixed by previous patches

Bug#823750: meta already fixed

2016-05-08 Thread Bastien ROUCARIES
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537422 is fixed by previous patches

Bug#823750: Outofbound access in psd file

2016-05-08 Thread Bastien ROUCARIES
Fix a outofbound access for psd file Added extra check to fix https://github.com/ImageMagick/ImageMagick/issues/93 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/4b1b9c0522628887195bad3a6723f7000b0c9a58 bug: https://github.com/ImageMagick/ImageMagick/issues/93

Bug#823750: PSD heap overflow

2016-05-08 Thread Bastien ROUCARIES
Fix a heap buffer overflow in psd file handling Bug: https://github.com/ImageMagick/ImageMagick/issues/92. Origin: https://github.com/ImageMagick/ImageMagick/commit/30eec879c8b446b0ea9a3bb0da1a441cc8482bc4 Bug-ubuntu:

Bug#823750: HDR overflow

2016-05-08 Thread Bastien ROUCARIES
Fix a heap overflow in hdr handling bug: https://github.com/ImageMagick/ImageMagick/issues/90 bug-ubuntu: https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537213 origin: upstream, https://github.com/ImageMagick/ImageMagick/commit/14e606db148d6ebcaae20f1e1d6d71903ca4a556 Bug-debian:

Bug#823750: heap overflow

2016-05-08 Thread Bastien ROUCARIES
They are also https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1533450 This is fixed by previous psd file rewrite

Bug#823750: Multiple format out of bound

2016-05-08 Thread Bastien ROUCARIES
commit 47acd4936986cb6a1378c6858456c3590f9ef555 Author: Cristy Date: Thu Jan 14 19:55:03 2016 -0500 Fix out of bound access in sun file This is a partial fix for sun file. Origin: upstream, https://github.com/ImageMagick/ImageMagick/issues/81

Bug#823750: SUN file SIGABRT

2016-05-08 Thread Bastien ROUCARIES
malformed sun file could lead to DOS by ABRT signal commit 19e3a954182f81d58fea1da478e4689f8ca2d685 Author: cristy Date: Tue Jan 13 13:31:27 2015 + Avoid a SIGABRT in sun file handling This is a partial fix for malformed sun file Bug:

Bug#823750: Sun file SEGV

2016-05-08 Thread Bastien ROUCARIES
Fix an SEGV in sun file handling This is from two upstream patches. Bug: http://www.imagemagick.org/discourse-server/viewtopic.php?f=3=26848 Bug-debian: https://bugs.debian.org/823750 Origin: upstream,

<    2   3   4   5   6   7   8   9   10   11   >