Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Debian update for imagemagick Advisory Available in Danish 

Secunia Advisory: SA14816  
Release Date: 2005-04-04

Critical:
Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

OS:Debian GNU/Linux 3.0
Debian GNU/Linux unstable alias sid


CVE reference:CVE-2005-0397 (Secunia mirror)
CVE-2005-0759 (Secunia mirror)
CVE-2005-0760 (Secunia mirror)
CVE-2005-0762 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Debian has issued an update for imagemagick. This fixes some vulnerabilities, which potentially can be exploited by malicious people to compromise a user's system.

For more information:
SA14466

This update also fixes a boundary error in the handling of SGI files and some other errors in the handling of TIFF and PSD images.

Solution:
Apply updated packages.

-- Debian GNU/Linux 3.0 alias woody --

Source archives:

http://security.debian.org/pool/updat...agick/imagemagick_5.4.4.5-1woody6.dsc
Size/MD5 checksum: 852 a15c9207799f081dd98137741ea6ff3a
http://security.debian.org/pool/updat...k/imagemagick_5.4.4.5-1woody6.diff.gz
Size/MD5 checksum: 16745 4d7ca7465c6ddccf2469daa50708bb10
http://security.debian.org/pool/updat...agick/imagemagick_5.4.4.5.orig.tar.gz
Size/MD5 checksum: 3901237 f35e356b4ac1ebc58e3cffa7ea7abc07

Alpha architecture:

http://security.debian.org/pool/updat...imagemagick_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 1309984 ba338db7c136e444624ea1baf4542882
http://security.debian.org/pool/updat...ibmagick++5_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 154312 e84ecca66a19e9ab19c5cdccc7b50cf2
http://security.debian.org/pool/updat...gick++5-dev_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 56504 97107fda4a8fdab9f94878dc0c64099f
http://security.debian.org/pool/updat.../libmagick5_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 833508 d509ef8f730fbb1859c25e80ed541631
http://security.debian.org/pool/updat...magick5-dev_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 67496 4cea2503f109812d1e9b15c59864a162
http://security.debian.org/pool/updat.../perlmagick_5.4.4.5-1woody6_alpha.deb
Size/MD5 checksum: 114002 c36b4b799a35aafdeea7e15812b9317f

ARM architecture:

http://security.debian.org/pool/updat...k/imagemagick_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 1297364 311a8c69fe6e5c9fb07cd46a9efe9b6c
http://security.debian.org/pool/updat.../libmagick++5_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 118998 7a4e8fbf7fc3c4ef0cd7a55a94aedebb
http://security.debian.org/pool/updat...magick++5-dev_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 56568 6d15686630d656bde0154bc2198737e9
http://security.debian.org/pool/updat...ck/libmagick5_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 898982 99b8e3cd11b6628d5bc8b1ce3631661a
http://security.debian.org/pool/updat...ibmagick5-dev_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 67566 64d6832600f49dd5cc521200d6a3aaff
http://security.debian.org/pool/updat...ck/perlmagick_5.4.4.5-1woody6_arm.deb
Size/MD5 checksum: 110130 a1183bf2e0f132242e12e61ff2709579

Intel IA-32 architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 1294944 68e814230b7f1d9541b6425a308202ad
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 122958 1e8124a2a00f4313f53fed519f597934
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 56520 93d4e5a3fe8b73186144c3c32da1c7a5
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 772790 b7aa7c91e2f0ccc8459659e50d2c3e29
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 67516 bb9f2f32b01674c9251b3384a7ea7ecb
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_i386.deb
Size/MD5 checksum: 107116 62dd2d24f082e40ee99ad34804571732

Intel IA-64 architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 1336402 6b3759a5668e38fffbe4d7b42815fce9
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 137224 d14afd94727d4adc452acff048e6532c
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 56492 c1449b54caaa5cb44522b4e1bf726100
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 1360250 f6a07a004cdde46a4ca63e9342c2c263
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 67496 34645b0a4d2e91a1e3e5be40f79b7831
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_ia64.deb
Size/MD5 checksum: 133128 fc4146c8b9e40d7d1fafc446cfe9f5f9

HP Precision architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 1297598 439b7582db0bf3d81ecb07828d0f2193
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 133080 839a81effa97b63cc94c1d017be5a111
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 56538 8b3d64f7b275b6b162a3b5ab8c308f87
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 860082 9b1af5e4b8bbec6e444b4c064eca20db
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 67536 81ff1905a0cc25a08c7933854c8870b5
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_hppa.deb
Size/MD5 checksum: 117380 4b508a87b1adf0df70b01776ac12ecde

Motorola 680x0 architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 1292754 200fcc0ede095f3664278142a3616826
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 134232 6d630d0cf31bca101414eaf85bfad676
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 56568 8d36f2552a7a243830d686b341475ac5
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 752122 a20851d31e0414e0f711483f7c0880b5
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 67548 6d4d8d54045d3536382813636c772ddb
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_m68k.deb
Size/MD5 checksum: 107638 fa7e7f41400e0d1e6ab1a023f0b3680a

Big endian MIPS architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 1295080 7c56fcf5c91d7e150f5ffdd918a59f0d
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 120514 0acf33b18ed3d13cb91123470ea119e3
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 56542 f4059130ba28f7b5aaee65eb8b309034
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 733268 72e09e1882693c1ce23b1e4af7bff832
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 67536 5d8b6d466b1d196958fdb4af25aceac1
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_mips.deb
Size/MD5 checksum: 103552 bedac29cebdb07de2cfcaacc74f2cd95

Little endian MIPS architecture:

http://security.debian.org/pool/updat...magemagick_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 1294986 d019d898ebf34e294d22de0961766cb1
http://security.debian.org/pool/updat...bmagick++5_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 114194 a0938f3c642123d54eed414849c6a208
http://security.debian.org/pool/updat...ick++5-dev_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 56540 96a61a77e9f4586f376e426e9fd38f60
http://security.debian.org/pool/updat...libmagick5_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 721260 0d391b1dacecfe583be7475839b60f44
http://security.debian.org/pool/updat...agick5-dev_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 67532 185ed4d1909ce47b330c2dcccf556cfa
http://security.debian.org/pool/updat...perlmagick_5.4.4.5-1woody6_mipsel.deb
Size/MD5 checksum: 103082 71995a7aa491caf5934372dcbe5a0f25

PowerPC architecture:

http://security.debian.org/pool/updat...agemagick_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 1291654 8668dc869e092374cf065577efe0299c
http://security.debian.org/pool/updat...magick++5_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 136166 3e82b082adb87fcac9d7de985c1e5569
http://security.debian.org/pool/updat...ck++5-dev_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 56530 477261d1d2ba7e708489e421f16f9169
http://security.debian.org/pool/updat...ibmagick5_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 786508 94134153d2197af796b361570c0eabc8
http://security.debian.org/pool/updat...gick5-dev_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 67524 d98810b21696d04234de762965538249
http://security.debian.org/pool/updat...erlmagick_5.4.4.5-1woody6_powerpc.deb
Size/MD5 checksum: 112134 934550e0901466a6cde901ae495a3a22

IBM S/390 architecture:

http://security.debian.org/pool/updat.../imagemagick_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 1292328 718d9b153f4ef476c87d5edd7a49e17b
http://security.debian.org/pool/updat...libmagick++5_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 132222 9884c69ac67a3bbdc816c3fa99754da7
http://security.debian.org/pool/updat...agick++5-dev_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 56522 4d78d6cf4bf65450c96a3b790253bfbe
http://security.debian.org/pool/updat...k/libmagick5_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 778350 8d9559caafcf89f5a3ac7ca176590868
http://security.debian.org/pool/updat...bmagick5-dev_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 67526 bcc3415a9a8713de9090a02574619519
http://security.debian.org/pool/updat...k/perlmagick_5.4.4.5-1woody6_s390.deb
Size/MD5 checksum: 109200 cd42c80bc62007d844e968cbbcdd552c

Sun Sparc architecture:

http://security.debian.org/pool/updat...imagemagick_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 1295418 d4856270abcdd7f13edeb936b6fef130
http://security.debian.org/pool/updat...ibmagick++5_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 124058 398f89e2b26f3de378c8637a7918295d
http://security.debian.org/pool/updat...gick++5-dev_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 56536 401e2418f5e0467a873cc085c97f5cd6
http://security.debian.org/pool/updat.../libmagick5_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 802868 058c06b4bba2b2a5349ff75444eaa236
http://security.debian.org/pool/updat...magick5-dev_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 67526 bf83c12f85bfe35bcaefa60c8d2054d4
http://security.debian.org/pool/updat.../perlmagick_5.4.4.5-1woody6_sparc.deb
Size/MD5 checksum: 113100 94154ee3f7695ecdaebb0a39548f4908


-- Debian GNU/Linux unstable alias sid --

Fixed in version 6.0.6.2-2.2.

Original Advisory:
http://www.debian.org/security/2005/dsa-702

Other References:
SA14466:
http://secunia.com/advisories/14466/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

1277 Related Secunia Security Advisories, displaying 10

1. Debian update for tiff
2. Debian update for libxml2
3. Debian update for postfix
4. Debian update for pdns
5. Debian update for httracker
6. Debian update for opensc
7. Debian update for cupsys
8. Debian update for libxslt
9. Debian update for newsx
10. Debian update for ruby1.9

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
phpJobScheduler "installed_conf ig_file" File Inclusion Vulnerabilities
2.
phpMyRealty "price_max" SQL Injection Vulnerability
3.
Novell eDirectory Multiple Vulnerabilities
4.
Slackware update for amarok
5.
HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
6.
Sun Solaris Kernel Covert Channel Security Bypass
7.
OpenOffice "rtl_allocateMe mory()" Truncation Vulnerability
8.
dotProject SQL Injection and Cross-Site Scripting
9.
GpsDrive "geo-code" Insecure Temporary Files
10.
geo-* Insecure Temporary Files





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia