USN-7053-1: ImageMagick vulnerabilities
It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or potentially leak sensitive information. These vulnerabilities included heap and stack-based buffer overflows, memory leaks, and improper handling of uninitialized values.
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
- CVE-2019-16710
- CVE-2019-13297
- CVE-2019-13310
- CVE-2019-13305
- CVE-2019-15140
- CVE-2019-13301
- CVE-2019-13307
- CVE-2019-13304
- CVE-2019-15141
- CVE-2019-15139
- CVE-2019-16708
- CVE-2019-16712
- CVE-2019-16709
- CVE-2019-19949
- CVE-2019-13295
- CVE-2019-16711
- CVE-2019-19948
- CVE-2019-13300
- CVE-2019-13135
- CVE-2019-13311
- CVE-2019-13454
- CVE-2019-13309
- CVE-2019-16713
- CVE-2019-7175
- CVE-2019-13306
Frequently Asked Questions
What is the severity of USN-7053-1?
The severity of USN-7053-1 is critical due to the potential for denial of service and sensitive information leak.
How do I fix USN-7053-1?
To fix USN-7053-1, upgrade ImageMagick and related packages to version 8:6.7.7.10-6ubuntu3.13+esm10 or later.
Which versions of ImageMagick are affected by USN-7053-1?
USN-7053-1 affects ImageMagick versions prior to 8:6.7.7.10-6ubuntu3.13+esm10 on Ubuntu 14.04.
What types of issues does USN-7053-1 address?
USN-7053-1 addresses issues with handling malformed image files that can lead to security vulnerabilities.
Is USN-7053-1 applicable to systems using Ubuntu 14.04?
Yes, USN-7053-1 is specifically applicable to systems running Ubuntu 14.04.