Updated graphicsmagick packages fix security vulnerabilityPublication date: 28 Sep 2016
Affected Mageia releases : 5
CVE: CVE-2016-7447 , CVE-2016-7448 , CVE-2016-7449
A possible heap overflow of the EscapeParenthesis() function (CVE-2016-7447). The Utah RLE reader did not validate that header information was reasonable given the file size and so it could cause huge memory allocations and/or consume huge amounts of CPU (CVE-2016-7448). The TIFF reader had a bug pertaining to use of TIFFGetField() when a 'count' value is returned. The bug caused a heap read overflow (due to using strlcpy() to copy a possibly unterminated string) which could allow an untrusted file to crash the software (CVE-2016-7449).