Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

openSUSE Leap 15.4 SUSE-SU-2023:3792-1 Moderate: ImageMagick DoS

opensuse
Calendar Grey September 26, 2023
Dist Opensuse Esm H88
The recent ImageMagick patch targets a critical buffer overflow vulnerability, improving security for openSUSE Leap 15.4. Users are advised to apply the provided update procedures.
This update for ImageMagick fixes the following issues: CVE-2020-21679: Fixed a buffer overflow in WritePCXImage function in pcx.c which may allow a remote attackers to cause a den...

Description

This update for ImageMagick fixes the following issues:

* CVE-2020-21679: Fixed a buffer overflow in WritePCXImage function in pcx.c

which may allow a remote attackers to cause a denial of service.

(bsc#1214578)

Patch

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.4

zypper in -t patch openSUSE-SLE-15.4-2023-3792=1

Package List

* openSUSE Leap 15.4 (x86_64)

* libMagick++-7_Q16HDRI4-32bit-debuginfo-7.0.7.34-150200.10.54.1

* libMagick++-7_Q16HDRI4-32bit-7.0.7.34-150200.10.54.1

* libMagickWand-7_Q16HDRI6-32bit-debuginfo-7.0.7.34-150200.10.54.1

* libMagickWand-7_Q16HDRI6-32bit-7.0.7.34-150200.10.54.1

* libMagickCore-7_Q16HDRI6-32bit-7.0.7.34-150200.10.54.1

* libMagickCore-7_Q16HDRI6-32bit-debuginfo-7.0.7.34-150200.10.54.1

* openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64)

* libMagickCore-7_Q16HDRI6-7.0.7.34-150200.10.54.1

* libMagickWand-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.54.1

* libMagick++-7_Q16HDRI4-debuginfo-7.0.7.34-150200.10.54.1

* libMagickCore-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.54.1

* libMagickWand-7_Q16HDRI6-7.0.7.34-150200.10.54.1

* libMagick++-7_Q16HDRI4-7.0.7.34-150200.10.54.1

References

* #1214578

## References:

* https://www.suse.com/security/cve/CVE-2020-21679.html

* https://bugzilla.suse.com/show_bug.cgi?id=1214578

Announcement ID: SUSE-SU-2023:3792-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here