Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Fedora 21: 2015-8648 Moderate: ImageMagick Security Update

fedora
Calendar Grey June 5, 2015
Dist Fedora Esm H88
This release resolves a security vulnerability in dcraw and debuts version 9.25.0, enhancing functionality for various digital cameras.
This update contains a fix for a bug which could cause dcraw write past array boundaries

Summary

This package contains dcraw, a command line tool to decode raw image data

downloaded from digital cameras.

Update Information:

This update contains a fix for a bug which could cause dcraw write past array boundaries.

Additionally, it updates dcraw to version 9,25.0 which contains updated color matrices and supports the Canon EOS 5DS.

Change Log

* Wed May 20 2015 Nils Philippsen - 9.25.0-2 - add Provides: bundled(dcraw) - don't manually specify, clean buildroot * Wed May 20 2015 Nils Philippsen - 9.25.0-1 - version 9.25.0 - remove unnecessary check from CVE-2013-1438 patch - avoid writing past array boundaries when reading certain raw formats (CVE-2015-3885) * Wed Apr 8 2015 Nils Philippsen - 9.24.4-1 - version 9.24.4 * Sat Feb 14 2015 Nils Philippsen - 9.23.0-1 - version 9.23.0

References


[ 1 ] Bug #1221249 - CVE-2015-3885 dcraw: input sanitization flaw leading to buffer overflow https://bugzilla.redhat.com/show_bug.cgi?id=1221249

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update dcraw' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: dcraw
Product: Fedora 21
Version: 9.25.0
Release: 2.fc21
URL: Summary : Tool for decoding raw image data from digital cameras

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here