SUSE SLES11 Security Update : ImageMagick (SUSE-SU-2017:3378-1)

high Nessus Plugin ID 105408

Language:

Synopsis

The remote SUSE host is missing one or more security updates.

Description

This update for ImageMagick fixes the following issues :

- CVE-2017-14607: out of bounds read flaw related to ReadTIFFImagehas could possibly disclose potentially sensitive memory [bsc#1059778]

- CVE-2017-11640: NULL pointer deref in WritePTIFImage() in coders/tiff.c [bsc#1050632]

- CVE-2017-14342: a memory exhaustion vulnerability in ReadWPGImage in coders/wpg.c could lead to denial of service [bsc#1058485]

- CVE-2017-14341: Infinite loop in the ReadWPGImage function [bsc#1058637]

- CVE-2017-16546: problem in the function ReadWPGImage in coders/wpg.c could lead to denial of service [bsc#1067181]

- CVE-2017-16545: The ReadWPGImage function in coders/wpg.c in validation problems could lead to denial of service [bsc#1067184]

- CVE-2017-14175: Lack of End of File check could lead to denial of service [bsc#1057719]

- CVE-2017-13769: denial of service issue in function WriteTHUMBNAILImage in coders/thumbnail.c [bsc#1056432]

- CVE-2017-13134: a heap-based buffer over-read was found in thefunction SFWScan in coders/sfw.c, which allows attackers to cause adenial of service via a crafted file. [bsc#1055214]

- CVE-2017-11478: ReadOneDJVUImage in coders/djvu.c in ImageMagick allows remote attackers to cause a DoS [bsc#1049796]

- CVE-2017-15930: NULL pointer dereference while transfering JPEG scanlines could lead to denial of service [bsc#1066003]

- CVE-2017-12983: Heap-based buffer overflow in the ReadSFWImage function in coders/sfw.c allows remote attackers to cause a denial of service [bsc#1054757]

- CVE-2017-14531: memory exhaustion issue in ReadSUNImage incoders/sun.c. [bsc#1059666]

- CVE-2017-12435: Memory exhaustion in ReadSUNImage in coders/sun.c, which allows attackers to cause denial of service [bsc#1052553]

- CVE-2017-12587: User controlable large loop in the ReadPWPImage in coders\pwp.c could lead to denial of service [bsc#1052450]

- CVE-2017-14173: unction ReadTXTImage is vulnerable to a integer overflow that could lead to denial of service [bsc#1057729]

- CVE-2017-11188: ImageMagick: The ReadDPXImage function in codersdpx.c in ImageMagick 7.0.6-0 has a largeloop vulnerability that can cause CPU exhaustion via a crafted DPX file, relatedto lack of an EOF check.
[bnc#1048457]

- CVE-2017-11527: ImageMagick: ReadDPXImage in coders/dpx.c allows remote attackers to cause DoS [bnc#1050116]

- CVE-2017-11535: GraphicsMagick, ImageMagick: Heap-based buffer over-read in WritePSImage() in coders/ps.c [bnc#1050139]

- CVE-2017-11752: ImageMagick: ReadMAGICKImage in coders/magick.c allows to cause DoS [bnc#1051441]

- CVE-2017-12140: ImageMagick: ReadDCMImage in codersdcm.c has a ninteger signedness error leading to excessive memory consumption [bnc#1051847]

- CVE-2017-12669: ImageMagick: Memory leak in WriteCALSImage in coders/cals.c [bnc#1052689]

- CVE-2017-12662: GraphicsMagick, ImageMagick: Memory leak in WritePDFImage in coders/pdf.c [bnc#1052758]

- CVE-2017-12644: ImageMagick: Memory leak in ReadDCMImage in codersdcm.c [bnc#1052764]

- CVE-2017-14172: ImageMagick: Lack of end of file check in ReadPSImage() could lead to a denial of service [bnc#1057730]

- CVE-2017-14733: GraphicsMagick: Heap overflow on ReadRLEImage in coders/rle.c could lead to denial of service [bnc#1060577]

Note that Tenable Network Security has extracted the preceding description block directly from the SUSE security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.

Solution

To install this SUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product :

SUSE Linux Enterprise Software Development Kit 11-SP4:zypper in -t patch sdksp4-ImageMagick-13384=1

SUSE Linux Enterprise Server 11-SP4:zypper in -t patch slessp4-ImageMagick-13384=1

SUSE Linux Enterprise Debuginfo 11-SP4:zypper in -t patch dbgsp4-ImageMagick-13384=1

To bring your system up-to-date, use 'zypper patch'.

See Also

https://www.suse.com/security/cve/CVE-2017-11188/

https://www.suse.com/security/cve/CVE-2017-11478/

https://www.suse.com/security/cve/CVE-2017-11527/

https://www.suse.com/security/cve/CVE-2017-11535/

https://www.suse.com/security/cve/CVE-2017-11640/

https://www.suse.com/security/cve/CVE-2017-11752/

https://www.suse.com/security/cve/CVE-2017-12140/

https://www.suse.com/security/cve/CVE-2017-12435/

https://www.suse.com/security/cve/CVE-2017-12587/

https://www.suse.com/security/cve/CVE-2017-12644/

https://www.suse.com/security/cve/CVE-2017-12662/

https://www.suse.com/security/cve/CVE-2017-12669/

https://www.suse.com/security/cve/CVE-2017-12983/

https://bugzilla.suse.com/show_bug.cgi?id=1048457

https://bugzilla.suse.com/show_bug.cgi?id=1049796

https://bugzilla.suse.com/show_bug.cgi?id=1050116

https://bugzilla.suse.com/show_bug.cgi?id=1050139

https://bugzilla.suse.com/show_bug.cgi?id=1050632

https://bugzilla.suse.com/show_bug.cgi?id=1051441

https://bugzilla.suse.com/show_bug.cgi?id=1051847

https://bugzilla.suse.com/show_bug.cgi?id=1052450

https://bugzilla.suse.com/show_bug.cgi?id=1052553

https://bugzilla.suse.com/show_bug.cgi?id=1052689

https://bugzilla.suse.com/show_bug.cgi?id=1052758

https://bugzilla.suse.com/show_bug.cgi?id=1052764

https://bugzilla.suse.com/show_bug.cgi?id=1054757

https://bugzilla.suse.com/show_bug.cgi?id=1055214

https://bugzilla.suse.com/show_bug.cgi?id=1056432

https://bugzilla.suse.com/show_bug.cgi?id=1057719

https://bugzilla.suse.com/show_bug.cgi?id=1057729

https://bugzilla.suse.com/show_bug.cgi?id=1057730

https://bugzilla.suse.com/show_bug.cgi?id=1058485

https://bugzilla.suse.com/show_bug.cgi?id=1058637

https://bugzilla.suse.com/show_bug.cgi?id=1059666

https://bugzilla.suse.com/show_bug.cgi?id=1059778

https://bugzilla.suse.com/show_bug.cgi?id=1060577

https://bugzilla.suse.com/show_bug.cgi?id=1066003

https://bugzilla.suse.com/show_bug.cgi?id=1067181

https://bugzilla.suse.com/show_bug.cgi?id=1067184

https://www.suse.com/security/cve/CVE-2017-13134/

https://www.suse.com/security/cve/CVE-2017-13769/

https://www.suse.com/security/cve/CVE-2017-14172/

https://www.suse.com/security/cve/CVE-2017-14173/

https://www.suse.com/security/cve/CVE-2017-14175/

https://www.suse.com/security/cve/CVE-2017-14341/

https://www.suse.com/security/cve/CVE-2017-14342/

https://www.suse.com/security/cve/CVE-2017-14531/

https://www.suse.com/security/cve/CVE-2017-14607/

https://www.suse.com/security/cve/CVE-2017-14733/

https://www.suse.com/security/cve/CVE-2017-15930/

https://www.suse.com/security/cve/CVE-2017-16545/

https://www.suse.com/security/cve/CVE-2017-16546/

http://www.nessus.org/u?3dfddb1b

Plugin Details

Severity: High

ID: 105408

File Name: suse_SU-2017-3378-1.nasl

Version: 3.7

Type: local

Agent: unix

Published: 12/21/2017

Updated: 1/19/2021

Supported Sensors: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.7

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:novell:suse_linux:libmagickcore1, cpe:/o:novell:suse_linux:11

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 12/20/2017

Vulnerability Publication Date: 7/12/2017

Reference Information

CVE: CVE-2017-11188, CVE-2017-11478, CVE-2017-11527, CVE-2017-11535, CVE-2017-11640, CVE-2017-11752, CVE-2017-12140, CVE-2017-12435, CVE-2017-12587, CVE-2017-12644, CVE-2017-12662, CVE-2017-12669, CVE-2017-12983, CVE-2017-13134, CVE-2017-13769, CVE-2017-14172, CVE-2017-14173, CVE-2017-14175, CVE-2017-14341, CVE-2017-14342, CVE-2017-14531, CVE-2017-14607, CVE-2017-14733, CVE-2017-15930, CVE-2017-16545, CVE-2017-16546