No Image

USN-3232-1: ImageMagick vulnerabilities

2017-03-15 KENNETH 0

USN-3232-1: ImageMagick vulnerabilities Ubuntu Security Notice USN-3232-1 14th March, 2017 imagemagick vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.10 Ubuntu 16.04 LTS Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary Several security issues were fixed in ImageMagick. Software description imagemagick – Image manipulation programs and library Details It was discovered that ImageMagick incorrectly handled certain malformedimage files. If a user or automated system using ImageMagick were trickedinto opening a specially crafted image, an attacker could exploit this tocause a denial of service or possibly execute code with the privileges ofthe user invoking the program. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 16.10: libmagick++-6.q16-5v5 8:6.8.9.9-7ubuntu8.5 imagemagick 8:6.8.9.9-7ubuntu8.5 libmagickcore-6.q16-2-extra 8:6.8.9.9-7ubuntu8.5 imagemagick-6.q16 8:6.8.9.9-7ubuntu8.5 libmagickcore-6.q16-2 8:6.8.9.9-7ubuntu8.5 Ubuntu 16.04 LTS: libmagick++-6.q16-5v5 8:6.8.9.9-7ubuntu5.6 imagemagick 8:6.8.9.9-7ubuntu5.6 libmagickcore-6.q16-2-extra 8:6.8.9.9-7ubuntu5.6 imagemagick-6.q16 8:6.8.9.9-7ubuntu5.6 libmagickcore-6.q16-2 8:6.8.9.9-7ubuntu5.6 [ more… ]

No Image

March 2017 security update release

2017-03-15 KENNETH 0

March 2017 security update release Today we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates. More information about this month’s security updates can be found on the Security Update Guide.  Security bulletins were also published this month to give customers extra time to ensure they are ready to transition their processes. MSRC team       Source: March 2017 security update release