List Info

Thread: Security problem fixed in 6.2.7? (CVE-2006-2440)




Security problem fixed in 6.2.7? (CVE-2006-2440)
user name
2006-05-30 18:24:57
A Debian developer recently found a security flaw in the two
versions of 
ImageMagick (6.0.6.2 and 6.2.4.5) that are distributed with
Debian:

   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=345595

The problem has been assigned a CVE name of CVE-2006-2440:

   htt
p://nvd.nist.gov/nvd.cfm?cvename=CVE-2006-2440

Has this problem been fixed in the current version (6.2.7)
of 
ImageMagick?  My quick reading of the source suggests that
it has been, 
but I'd appreciate confirmation from someone more familiar
with the 
ImageMagick source code.

   craig

-- 
Craig Harman
Research Programmer
Rochester Center for Brain Imaging
charman  rcbi rochester edu / vox: 585-275-4822
_______________________________________________
Magick-developers mailing list
Magick-developersimagemagick.org
http://studio.imagemagick.org/mailman/listinfo/m
agick-developers
[1]

about | contact  Other archives ( Real Estate discussion Medical topics )