Fedora alert FEDORA-2014-9927 (GraphicsMagick)
From: | updates@fedoraproject.org | |
To: | package-announce@lists.fedoraproject.org | |
Subject: | [SECURITY] Fedora 20 Update: GraphicsMagick-1.3.20-3.fc20 | |
Date: | Tue, 09 Sep 2014 22:15:27 +0000 | |
Message-ID: | <20140909221551.D798F2333A@bastion01.phx2.fedoraproject.org> |
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2014-9927 2014-08-30 03:11:49 -------------------------------------------------------------------------------- Name : GraphicsMagick Product : Fedora 20 Version : 1.3.20 Release : 3.fc20 URL : http://www.graphicsmagick.org/ Summary : An ImageMagick fork, offering faster image generation and better quality Description : GraphicsMagick is a comprehensive image processing package which is initially based on ImageMagick 5.5.2, but which has undergone significant re-work by the GraphicsMagick Group to significantly improve the quality and performance of the software. -------------------------------------------------------------------------------- Update Information: Better fix for psd security issue, CVE-2014-1947. -------------------------------------------------------------------------------- ChangeLog: * Thu Aug 28 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-3 - go back to original L%02d format variant * Mon Aug 25 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-2 - better fix for CVE-2014-1947 (#1064098,#1083082) * Wed Aug 20 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.20-1 - 1.3.20, CVE-2014-1947 (#1064098,#1083082) * Fri Aug 15 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 1.3.19-9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild * Wed Aug 13 2014 Orion Poplawski <orion@cora.nwra.com> - 1.3.19-8 - Rebuild for libjbig soname bump * Fri Jun 6 2014 Fedora Release Engineering <rel-eng@lists.fedoraproject.org> - 1.3.19-7 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild * Sun May 11 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-6 - handle upgrade path for introduction of -doc subpkg in 1.3.19-4 * Mon Feb 3 2014 Remi Collet <remi@fedoraproject.org> - 1.3.19-5 - upstream patch, drop debug output (#1060665) * Sat Jan 25 2014 Ville Skyttä <ville.skytta@iki.fi> - 1.3.19-4 - Split docs into -doc subpackage, drop README.txt (#1056306). - Drop no longer needed BrowseDelegateDefault modification. - Convert docs to UTF-8. * Thu Jan 9 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-3 - ppc64le is a multilib arch (#1051208) * Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-2 - BR: jbigkit, libwebp, xdg-utils, xz * Wed Jan 1 2014 Rex Dieter <rdieter@fedoraproject.org> 1.3.19-1 - 1.3.19 (#1047676) * Tue Oct 15 2013 Rex Dieter <rdieter@fedoraproject.org> 1.3.18-5 - trim changelog -------------------------------------------------------------------------------- References: [ 1 ] Bug #1064098 - CVE-2014-1947 ImageMagick: PSD writing layer name buffer overflow ("L%02ld") https://bugzilla.redhat.com/show_bug.cgi?id=1064098 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update GraphicsMagick' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...