openSUSE Security Update : GraphicsMagick (openSUSE-2016-1229)

High Nessus Plugin ID 94304

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for GraphicsMagick fixes the following issues :

- security update :

- CVE-2016-8684 [boo#1005123]

- CVE-2016-8682 [boo#1005125]

- CVE-2016-8683 [boo#1005127]

- security update :

- CVE-2016-7529 [boo#1000399]

- CVE-2016-7528 [boo#1000434]

- CVE-2016-7515 [boo#1000689]

- CVE-2016-7446 [boo#999673]

- CVE-2016-7447 [boo#999673]

- CVE-2016-7448 [boo#999673]

- CVE-2016-7449 [boo#999673]

- CVE-2016-7517 [boo#1000693]

- CVE-2016-7519 [boo#1000695]

- CVE-2016-7522 [boo#1000698]

- CVE-2016-7524 [boo#1000700]

- CVE-2016-7531 [boo#1000704]

- CVE-2016-7533 [boo#1000707]

- CVE-2016-7537 [boo#1000711]

- CVE-2016-6823 [boo#1001066]

- CVE-2016-7101 [boo#1001221]

- do not divide by zero in WriteTIFFImage [boo#1002206]

- fix buffer overflow [boo#1002209]

- CVE-2016-7800 [boo#1002422]

- CVE-2016-7996, CVE-2016-7997 [boo#1003629]

Solution

Update the affected GraphicsMagick packages.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1000399

https://bugzilla.opensuse.org/show_bug.cgi?id=1000434

https://bugzilla.opensuse.org/show_bug.cgi?id=1000689

https://bugzilla.opensuse.org/show_bug.cgi?id=1000693

https://bugzilla.opensuse.org/show_bug.cgi?id=1000695

https://bugzilla.opensuse.org/show_bug.cgi?id=1000698

https://bugzilla.opensuse.org/show_bug.cgi?id=1000700

https://bugzilla.opensuse.org/show_bug.cgi?id=1000704

https://bugzilla.opensuse.org/show_bug.cgi?id=1000707

https://bugzilla.opensuse.org/show_bug.cgi?id=1000711

https://bugzilla.opensuse.org/show_bug.cgi?id=1001066

https://bugzilla.opensuse.org/show_bug.cgi?id=1001221

https://bugzilla.opensuse.org/show_bug.cgi?id=1002206

https://bugzilla.opensuse.org/show_bug.cgi?id=1002209

https://bugzilla.opensuse.org/show_bug.cgi?id=1002422

https://bugzilla.opensuse.org/show_bug.cgi?id=1003629

https://bugzilla.opensuse.org/show_bug.cgi?id=1005123

https://bugzilla.opensuse.org/show_bug.cgi?id=1005125

https://bugzilla.opensuse.org/show_bug.cgi?id=1005127

https://bugzilla.opensuse.org/show_bug.cgi?id=999673

Plugin Details

Severity: High

ID: 94304

File Name: openSUSE-2016-1229.nasl

Version: Revision: 2.7

Type: local

Agent: unix

Published: 2016/10/27

Updated: 2017/02/09

Dependencies: 12634

Risk Information

Risk Factor: High

CVSS v2.0

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

CVSS v3.0

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:GraphicsMagick, p-cpe:/a:novell:opensuse:GraphicsMagick-debuginfo, p-cpe:/a:novell:opensuse:GraphicsMagick-debugsource, p-cpe:/a:novell:opensuse:GraphicsMagick-devel, p-cpe:/a:novell:opensuse:libGraphicsMagick++-Q16-11, p-cpe:/a:novell:opensuse:libGraphicsMagick++-Q16-11-debuginfo, p-cpe:/a:novell:opensuse:libGraphicsMagick++-devel, p-cpe:/a:novell:opensuse:libGraphicsMagick-Q16-3, p-cpe:/a:novell:opensuse:libGraphicsMagick-Q16-3-debuginfo, p-cpe:/a:novell:opensuse:libGraphicsMagick3-config, p-cpe:/a:novell:opensuse:libGraphicsMagickWand-Q16-2, p-cpe:/a:novell:opensuse:libGraphicsMagickWand-Q16-2-debuginfo, p-cpe:/a:novell:opensuse:perl-GraphicsMagick, p-cpe:/a:novell:opensuse:perl-GraphicsMagick-debuginfo, cpe:/o:novell:opensuse:42.1

Patch Publication Date: 2016/10/26

Reference Information

CVE: CVE-2016-5688, CVE-2016-6823, CVE-2016-7101, CVE-2016-7446, CVE-2016-7447, CVE-2016-7448, CVE-2016-7449, CVE-2016-7515, CVE-2016-7517, CVE-2016-7519, CVE-2016-7522, CVE-2016-7524, CVE-2016-7528, CVE-2016-7529, CVE-2016-7531, CVE-2016-7533, CVE-2016-7537, CVE-2016-7800, CVE-2016-7996, CVE-2016-7997, CVE-2016-8682, CVE-2016-8683, CVE-2016-8684