Mandrake Linux Security Advisory : ImageMagick (MDKSA-2007:041)
High Nessus Plugin ID 24654
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionVladimir Nadvornik discovered a buffer overflow in GraphicsMagick and ImageMagick allows user-assisted attackers to cause a denial of service and possibly execute execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
This is related to an earlier fix for CVE-2006-5456 that did not fully correct the issue.
Updated packages have been patched to correct this issue.
SolutionUpdate the affected packages.