[3.5] imagemagick: multiple issues (CVE-2016-7799, CVE-2016-7906)
CVE-2016-7799: Mogrify buffer over-read in profile.c
Reference:
https://github.com/ImageMagick/ImageMagick/issues/280
Patch:
https://github.com/ImageMagick/ImageMagick/commit/a7bb158b7bedd1449a34432feb3a67c8f1873bfa
CVE-2016-7906: Mogrify heap-use-after-free in attribute.c
Reference:
https://github.com/ImageMagick/ImageMagick/issues/281
Patch:
https://github.com/ImageMagick/ImageMagick/commit/d63a3c5729df59f183e9e110d5d8385d17caaad0
(from redmine: issue id 6324, created on 2016-10-11, closed on 2017-09-05)
- Relations:
- parent #6323 (closed)