CVE-2006-5456

Publication date 23 October 2006

Last updated 24 July 2024


Ubuntu priority

Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.

Status

Package Ubuntu Release Status
graphicsmagick 7.10 gutsy
Fixed 1.1.7-14
7.04 feisty
Fixed 1.1.7-14
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Not in release
imagemagick 7.10 gutsy
Fixed 6.2.4.5.dfsg1-1ubuntu1
7.04 feisty
Fixed 6.2.4.5.dfsg1-0.14ubuntu0.1
6.10 edgy
Fixed 6.2.4.5.dfsg1-0.10ubuntu0.3
6.06 LTS dapper
Fixed 6.2.4.5-0.6ubuntu0.6

References

Related Ubuntu Security Notices (USN)

    • USN-422-1
    • ImageMagick vulnerabilities
    • 15 February 2007
    • USN-372-1
    • imagemagick vulnerability
    • 1 November 2006

Other references