imagemagick 8:6.9.11.60+dfsg-1ubuntu1 source package in Ubuntu

Changelog

imagemagick (8:6.9.11.60+dfsg-1ubuntu1) hirsute; urgency=medium

  * FFe: LP: #1923350.
  * Merge with Debian; remaining changes:
    - SECURITY UPDATE: code execution vulnerabilities in ghostscript as
      invoked by imagemagick
      - debian/patches/200-disable-ghostscript-formats.patch: disable
        ghostscript handled types by default in policy.xml
      - debian/tests/rose-*: remove pdf tests.
  * imagemagick is now in universe, so drop all the the patches removing
    build dependencies for main packages.

imagemagick (8:6.9.11.60+dfsg-1) unstable; urgency=high

  * New upstream version
    - Bug fix: "gscan2pdf tests fail", thanks to Sergio Durigan Junior
      (Closes: #980202).

imagemagick (8:6.9.11.58+dfsg-1) unstable; urgency=medium

  * New upstream version:
    - Fix error on i386 with php
  * Bug fix (workarround): "Many doubled www/www; broken links on
    index.html", thanks to 積丹尼 Dan Jacobson (Closes: #978138).

imagemagick (8:6.9.11.57+dfsg-1) unstable; urgency=medium

  * New upstream version:
    - Bug fix: "CVE-2020-29599", imagemagick mishandles the
      -authenticate option, which allows setting a password
      for password-protected PDF files. The user-controlled
      password was not properly escaped/sanitized and it
      was therefore possible to inject additional shell commands
      via coders/pdf.c. Thanks to Salvatore Bonaccorso
      (Closes: #977205).
    - Bug fix: "CVE-2020-27560: Division by Zero in function
      OptimizeLayerFrames", thanks to Salvatore Bonaccorso
      (Closes: #972797).
  * Fix dh_doxygen FTBFS (Closes: #971216)

imagemagick (8:6.9.11.24+dfsg-1) unstable; urgency=medium

  * Acknowledge NMU
  * New upstream version:
    - Fix CVE-2019-11470: Cineon image parsing DOS (Closes: #927830).
    - Fix CVE-2019-11472: XWD image parsing DOS (Closes: #927828).
    - Fix CVE-2020-13902: Heap based overflow in TIFF image decoding.
      (Closes: #928207).
    - Fix CVE-2019-11598: Heap-based buffer over-read in PNM image
      decoding (Closes: #928206).
    - Fix CVE-2019-12974: NULL pointer dereference in pango coder.
      (Closes: #931196).
    - Fix CVE-2019-12977: use of uninitialized value" vulnerability
      in the WriteJP2Image of jp2 coder (Closes: #931191).
    - Fix CVE-2019-12978: use of uninitialized value" vulnerability
      in the pango coder. (Closes: #931190).
    - Fix CVE-2019-12979: use of uninitialized value" vulnerability
      in MagickCore/image.c (Closes: #931189).
    - Fix CVE-2019-13135: use of uninitialized value" vulnerability
      in the cut coder (Closes: #932079).
    - Fix CVE-2019-13295: Heap-based buffer over-read in
      MagickCore/threshold.c (Closes: #931457).
    - Fix CVE-2019-13297: Heap-based buffer over-read in
      MagickCore/threshold.c (Closes: #931455).
    - Fix CVE-2019-13300: heap-based buffer overflow in
      MagickCore/statistic.c (Closes: #931454).
    - Fix CVE-2019-13304: stack-based buffer overflow for
      PNM image (Closes: #931453).
    - Fix CVE-2019-13305: stack-based buffer overflow for
      PNM image (Closes: #931452).
    - Fix CVE-2019-13306: stack-based buffer overflow for
      PNM image (Closes: #931449).
    - Fix CVE-2019-13307: heap-based buffer overflow in
      MagickCore/statistic.c (Closes: #931448).
    - Fix CVE-2019-13308: heap-based buffer overflow in
      MagickCore/fourier.c (Closes: #931447).
    - Fix CVE-2019-13391: heap-based buffer over-read (Closes: #931633).
    - Fix CVE-2019-13454:  Division by Zero in MagickCore/layer.c
      (Closes: #931740).
    - Fix CVE-2019-14981: divide-by-zero in MeanShiftImage
      (Closes: #955025).
    - Fix CVE-2019-15139: DOS for XWD images (Closes: #941670).
    - Fix CVE-2019-15140: DOS for mat images (Closes: #941671).
    - Fix CVE-2019-19948: Heap-based buffer overflow in SGI coder
      (Closes: #947308).
    - Fix CVE-2019-19949: Heap buffer over-read in PNG coder
      (Closes: #947309).
    - Fix CVE-2020-10251: out-of-bounds read vulnerability for HEIC
      coder (Closes: #953741).
    - Fix CVE-2020-13902: heap-based buffer over-read for TIFF coder.
  * Bug fix: "Updating the imagemagick Uploaders list", thanks to Tobias
    Frost (Closes: #962110). Thanks  Nelson A. de Oliveira
  * Add link in api doc dir to assets javascript library
  * Fix a typo in convert man page (Closes: #953279,#947983,#921594).
  * Fix a pkgconfig error that pull q16 instead of q16hdri (Closes: #950282).

 -- Matthias Klose <email address hidden>  Sun, 11 Apr 2021 14:32:48 +0200

Upload details

Uploaded by:
Matthias Klose
Uploaded to:
Hirsute
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
graphics
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
imagemagick_6.9.11.60+dfsg.orig.tar.xz 9.0 MiB 472fb516df842ee9c819ed80099c188463b9e961303511c36ae24d0eaa8959c4
imagemagick_6.9.11.60+dfsg-1ubuntu1.debian.tar.xz 259.2 KiB ce62a9164baa3758fa28997b74c3e8181153ff70daa5dd134ac6fb0b4e5002b0
imagemagick_6.9.11.60+dfsg-1ubuntu1.dsc 5.1 KiB dd9b584e1cd7046bde7b272e823c4659cd1859d47acadd470c544ff134deb90a

View changes file

Binary packages built by this source

imagemagick: No summary available for imagemagick in ubuntu impish.

No description available for imagemagick in ubuntu impish.

imagemagick-6-common: image manipulation programs -- infrastructure

 imagemagick-common contains the filesystem infrastructure required for
 further installation of imagemagick in any configuration; it does not provide
 a full installation of binaries, libraries, and utilities
 required to run imagemagick.
 .
 This package is independent of channel depth.

imagemagick-6-doc: No summary available for imagemagick-6-doc in ubuntu hirsute.

No description available for imagemagick-6-doc in ubuntu hirsute.

imagemagick-6.q16: No summary available for imagemagick-6.q16 in ubuntu hirsute.

No description available for imagemagick-6.q16 in ubuntu hirsute.

imagemagick-6.q16-dbgsym: No summary available for imagemagick-6.q16-dbgsym in ubuntu hirsute.

No description available for imagemagick-6.q16-dbgsym in ubuntu hirsute.

imagemagick-6.q16hdri: No summary available for imagemagick-6.q16hdri in ubuntu hirsute.

No description available for imagemagick-6.q16hdri in ubuntu hirsute.

imagemagick-6.q16hdri-dbgsym: No summary available for imagemagick-6.q16hdri-dbgsym in ubuntu impish.

No description available for imagemagick-6.q16hdri-dbgsym in ubuntu impish.

imagemagick-common: No summary available for imagemagick-common in ubuntu hirsute.

No description available for imagemagick-common in ubuntu hirsute.

imagemagick-doc: No summary available for imagemagick-doc in ubuntu impish.

No description available for imagemagick-doc in ubuntu impish.

libimage-magick-perl: No summary available for libimage-magick-perl in ubuntu hirsute.

No description available for libimage-magick-perl in ubuntu hirsute.

libimage-magick-q16-perl: Perl interface to the ImageMagick graphics routines -- Q16 version

 PerlMagick is an objected-oriented Perl interface to ImageMagick.
 Use the module to read, manipulate, or write an image or image sequence from
 within a Perl script. This makes it very suitable for Web CGI scripts.
 .
 This version of libimage-magick is compiled for a channel
 depth of 16 bits (Q16).
 .
 This package provides the perl Image::Magick::Q16 class.

libimage-magick-q16-perl-dbgsym: No summary available for libimage-magick-q16-perl-dbgsym in ubuntu impish.

No description available for libimage-magick-q16-perl-dbgsym in ubuntu impish.

libimage-magick-q16hdri-perl: No summary available for libimage-magick-q16hdri-perl in ubuntu impish.

No description available for libimage-magick-q16hdri-perl in ubuntu impish.

libimage-magick-q16hdri-perl-dbgsym: No summary available for libimage-magick-q16hdri-perl-dbgsym in ubuntu impish.

No description available for libimage-magick-q16hdri-perl-dbgsym in ubuntu impish.

libmagick++-6-headers: No summary available for libmagick++-6-headers in ubuntu hirsute.

No description available for libmagick++-6-headers in ubuntu hirsute.

libmagick++-6.q16-8: No summary available for libmagick++-6.q16-8 in ubuntu hirsute.

No description available for libmagick++-6.q16-8 in ubuntu hirsute.

libmagick++-6.q16-8-dbgsym: No summary available for libmagick++-6.q16-8-dbgsym in ubuntu hirsute.

No description available for libmagick++-6.q16-8-dbgsym in ubuntu hirsute.

libmagick++-6.q16-dev: No summary available for libmagick++-6.q16-dev in ubuntu hirsute.

No description available for libmagick++-6.q16-dev in ubuntu hirsute.

libmagick++-6.q16hdri-8: No summary available for libmagick++-6.q16hdri-8 in ubuntu hirsute.

No description available for libmagick++-6.q16hdri-8 in ubuntu hirsute.

libmagick++-6.q16hdri-8-dbgsym: debug symbols for libmagick++-6.q16hdri-8
libmagick++-6.q16hdri-dev: No summary available for libmagick++-6.q16hdri-dev in ubuntu hirsute.

No description available for libmagick++-6.q16hdri-dev in ubuntu hirsute.

libmagick++-dev: No summary available for libmagick++-dev in ubuntu hirsute.

No description available for libmagick++-dev in ubuntu hirsute.

libmagickcore-6-arch-config: low-level image manipulation library - architecture header files

 The MagickCore API is a low-level interface between the C programming language
 and the ImageMagick image processing libraries and is recommended for
 wizard-level programmers only. Unlike the MagickWand C API which uses only a
 few opaque types and accessors, with MagickCore you almost exclusively access
 the structure members directly.
 .
 This package includes the architecture dependent part of the
 headers files used by MagickCore.
 .
 This package is independent of channel depth.

libmagickcore-6-headers: low-level image manipulation library - header files

 The MagickCore API is a low-level interface between the C programming language
 and the ImageMagick image processing libraries and is recommended for
 wizard-level programmers only. Unlike the MagickWand C API which uses only a
 few opaque types and accessors, with MagickCore you almost exclusively access
 the structure members directly.
 .
 This package includes the architecture independent header files
 needed to compile programs using MagickCore.
 .
 This package is independent of channel depth.

libmagickcore-6.q16-6: No summary available for libmagickcore-6.q16-6 in ubuntu impish.

No description available for libmagickcore-6.q16-6 in ubuntu impish.

libmagickcore-6.q16-6-dbgsym: No summary available for libmagickcore-6.q16-6-dbgsym in ubuntu impish.

No description available for libmagickcore-6.q16-6-dbgsym in ubuntu impish.

libmagickcore-6.q16-6-extra: No summary available for libmagickcore-6.q16-6-extra in ubuntu hirsute.

No description available for libmagickcore-6.q16-6-extra in ubuntu hirsute.

libmagickcore-6.q16-6-extra-dbgsym: No summary available for libmagickcore-6.q16-6-extra-dbgsym in ubuntu hirsute.

No description available for libmagickcore-6.q16-6-extra-dbgsym in ubuntu hirsute.

libmagickcore-6.q16-dev: No summary available for libmagickcore-6.q16-dev in ubuntu hirsute.

No description available for libmagickcore-6.q16-dev in ubuntu hirsute.

libmagickcore-6.q16hdri-6: No summary available for libmagickcore-6.q16hdri-6 in ubuntu impish.

No description available for libmagickcore-6.q16hdri-6 in ubuntu impish.

libmagickcore-6.q16hdri-6-dbgsym: No summary available for libmagickcore-6.q16hdri-6-dbgsym in ubuntu hirsute.

No description available for libmagickcore-6.q16hdri-6-dbgsym in ubuntu hirsute.

libmagickcore-6.q16hdri-6-extra: No summary available for libmagickcore-6.q16hdri-6-extra in ubuntu hirsute.

No description available for libmagickcore-6.q16hdri-6-extra in ubuntu hirsute.

libmagickcore-6.q16hdri-6-extra-dbgsym: No summary available for libmagickcore-6.q16hdri-6-extra-dbgsym in ubuntu hirsute.

No description available for libmagickcore-6.q16hdri-6-extra-dbgsym in ubuntu hirsute.

libmagickcore-6.q16hdri-dev: low-level image manipulation library - development files (Q16HDRI)

 The MagickCore API is a low-level interface between the C programming language
 and the ImageMagick image processing libraries and is recommended for
 wizard-level programmers only. Unlike the MagickWand C API which uses only a
 few opaque types and accessors, with MagickCore you almost exclusively access
 the structure members directly.
 .
 This package includes header static libraries needed to compile
 programs using MagickCore.
 .
 This version of libmagickcore-dev is compiled for a channel
 depth of 16 bits with high dynamic range (Q16HDRI).

libmagickcore-dev: low-level image manipulation library -- dummy package

 This package included header files and static libraries needed to compile
 programs using MagickCore.
 .
 This is a transitional package to help migrate systems to the new
 ABI of libmagickcore-6 development files for default channel depth.
 .
 This is a dummy package. You can safely purge or remove it.

libmagickwand-6-headers: No summary available for libmagickwand-6-headers in ubuntu impish.

No description available for libmagickwand-6-headers in ubuntu impish.

libmagickwand-6.q16-6: No summary available for libmagickwand-6.q16-6 in ubuntu hirsute.

No description available for libmagickwand-6.q16-6 in ubuntu hirsute.

libmagickwand-6.q16-6-dbgsym: No summary available for libmagickwand-6.q16-6-dbgsym in ubuntu hirsute.

No description available for libmagickwand-6.q16-6-dbgsym in ubuntu hirsute.

libmagickwand-6.q16-dev: No summary available for libmagickwand-6.q16-dev in ubuntu hirsute.

No description available for libmagickwand-6.q16-dev in ubuntu hirsute.

libmagickwand-6.q16hdri-6: No summary available for libmagickwand-6.q16hdri-6 in ubuntu impish.

No description available for libmagickwand-6.q16hdri-6 in ubuntu impish.

libmagickwand-6.q16hdri-6-dbgsym: debug symbols for libmagickwand-6.q16hdri-6
libmagickwand-6.q16hdri-dev: image manipulation library - development files (Q16HDRI)

 The MagickWand API is the recommended interface between the C programming
 language and the ImageMagick image processing libraries. Unlike the
 MagickCore C API, MagickWand uses only a few opaque types. Accessors are
 available to set or get important wand properties.
 .
 This package the static libraries needed to compile
 programs using MagickWand.
 .
 This version of libmagickwand-dev is compiled for a channel
 depth of 16 bits with high dynamic range (Q16HDRI).

libmagickwand-dev: image manipulation library -- dummy package

 This package included the static libraries needed to compile
 programs using MagickWand.
 .
 This is a transitional package to help migrate systems to the new
 ABI of libmagickwand-6 development files for default channel depth.
 .
 This is a dummy package. You can safely purge or remove it.

perlmagick: No summary available for perlmagick in ubuntu hirsute.

No description available for perlmagick in ubuntu hirsute.