OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
[SA21832] SUSE update for ImageMagick

From: Secunia Security Advisories (sec-advsecunia.com)
Date: Mon Sep 11 2006 - 03:17:04 CDT


----------------------------------------------------------------------

Want to work within IT-Security?

Secunia is expanding its team of highly skilled security experts.
We will help with relocation and obtaining a work permit.

Currently the following type of positions are available:
http://secunia.com/quality_assurance_analyst/
http://secunia.com/web_application_security_specialist/
http://secunia.com/hardcore_disassembler_and_reverse_engineer/

----------------------------------------------------------------------

TITLE:
SUSE update for ImageMagick

SECUNIA ADVISORY ID:
SA21832

VERIFY ADVISORY:
http://secunia.com/advisories/21832/

CRITICAL:
Moderately critical

IMPACT:
DoS, System access

WHERE:
From remote

OPERATING SYSTEM:
SUSE Linux 10
http://secunia.com/product/6221/
SUSE Linux 10.1
http://secunia.com/product/10796/
SUSE Linux 9.2
http://secunia.com/product/4258/
SUSE Linux 9.3
http://secunia.com/product/4933/
SuSE Linux Desktop 1.x
http://secunia.com/product/2002/
SuSE Linux Openexchange Server 4.x
http://secunia.com/product/2001/
SuSE Linux Standard Server 8
http://secunia.com/product/2526/

DESCRIPTION:
SUSE has issued an update for ImageMagick. This fixes some
vulnerabilities, which can be exploited by malicious people to cause
a DoS (Denial of Service) or potentially compromise a user's system.

For more information:
SA21462
SA21615

SOLUTION:
Apply updated packages.

 x86 Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-6.2.5-16.5.i586.rpm
5f690184a3fd42e008c692ca32420c14
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-Magick++-6.2.5-16.5.i586.rpm
875adc1e047e4229cf38c43e2e4440f6
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-Magick++-devel-6.2.5-16.5.i586.rpm
77f37b959830786ca39d490082f42352
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-devel-6.2.5-16.5.i586.rpm
4427316e60ac1d91d11eaf870a165a21
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/perl-PerlMagick-6.2.5-16.5.i586.rpm
52983ec2c90872eeef642bd3185740d1

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-6.2.3-4.4.i586.rpm
eb244ad6713f90513c8f07f69159c38a
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-Magick++-6.2.3-4.4.i586.rpm
eac05c08d9e325b0819aa5cbc52ab6c5
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-Magick++-devel-6.2.3-4.4.i586.rpm
f16bb6b5027e3aac4c6a5c79b5b9d112
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-devel-6.2.3-4.4.i586.rpm
375301f05f9e3afc0666468d05e779c9
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/perl-PerlMagick-6.2.3-4.4.i586.rpm
a9b9ccdec88a4266f6b5cacf236156b4

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-6.1.8-6.4.i586.rpm
e6894d0d2f42caa3f28bef35d3fb2f16
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-Magick++-6.1.8-6.4.i586.rpm
c2e42c42c3f6fdbb155cc90a23678383
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-Magick++-devel-6.1.8-6.4.i586.rpm
010ed22ea64776dc4f23b1363d6ab3b9
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-devel-6.1.8-6.4.i586.rpm
8cf0e927fb535a1c9b3f88bb70f66139
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/perl-PerlMagick-6.1.8-6.4.i586.rpm
e0cf15734aa3b3f816cad715a3237715

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-6.0.7-4.10.i586.rpm
485f3cce181b3bbb0383a3741b65a324
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-Magick++-6.0.7-4.10.i586.rpm
ea5925b9721d9d268e15811aaed0de02
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-Magick++-devel-6.0.7-4.10.i586.rpm
d5e642cb1007af1557750e4882925777
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-devel-6.0.7-4.10.i586.rpm
0a5d22155dd3c62be4d544ffc588ee9f
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/perl-PerlMagick-6.0.7-4.10.i586.rpm
c8f06aede187803cc28b3837ba3df4ac

Power PC Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-6.2.5-16.5.ppc.rpm
c93639232b7ea9f89d4e07e581b02165
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-Magick++-6.2.5-16.5.ppc.rpm
6d7350f42d29fe3c8d8b61e9d19f4992
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-Magick++-devel-6.2.5-16.5.ppc.rpm
3f53b0f21ff82a7047ebcebb8156dc3c
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-devel-6.2.5-16.5.ppc.rpm
cbfd84e86d3d84dd0eca1d18dd8d174d
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/perl-PerlMagick-6.2.5-16.5.ppc.rpm
6b7ceacc6943720e26def3bd89178979

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-6.2.3-4.4.ppc.rpm
a019f49d450751d8925904276dc8a96e
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-Magick++-6.2.3-4.4.ppc.rpm
1aa1dd6441844e1b7b27b1b148d97531
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-Magick++-devel-6.2.3-4.4.ppc.rpm
db7787929580024853e4ce4bb2713463
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-devel-6.2.3-4.4.ppc.rpm
21ea81e9ede5e9690231ff455cb46257
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/perl-PerlMagick-6.2.3-4.4.ppc.rpm
85769d199769b066282c7a0848e07072

x86-64 Platform:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-6.2.5-16.5.x86_64.rpm
eeb689ea09f8dd351c2915e79f1d1d05
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-Magick++-6.2.5-16.5.x86_64.rpm
475f0e4c441dbe534252850a393d799a
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-Magick++-devel-6.2.5-16.5.x86_64.rpm
edb98a197924dcffaf6cf0b1e40bad15
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-devel-6.2.5-16.5.x86_64.rpm
265a8d36b62f176bce69bdad7d42b29c
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/perl-PerlMagick-6.2.5-16.5.x86_64.rpm
6c05eff3c6754c28c7246952f5c0ccef

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-6.2.3-4.4.x86_64.rpm
13adfc596917d5cc6040c70484721948
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-Magick++-6.2.3-4.4.x86_64.rpm
1e4f5f29ea4b6c14e10721297cf1becf
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-Magick++-devel-6.2.3-4.4.x86_64.rpm
4cfae138dd196c3dc080e0a9b9c5efa6
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-devel-6.2.3-4.4.x86_64.rpm
a62a8257ef807d1a3076e217b2f28990
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/perl-PerlMagick-6.2.3-4.4.x86_64.rpm
b82ffae380e38281e3fa30afbf576a2a

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-6.1.8-6.4.x86_64.rpm
78335adff546de7155987c67740c13b0
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-Magick++-6.1.8-6.4.x86_64.rpm
b5a9ae25cc1cb462c954fc77e72becea
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-Magick++-devel-6.1.8-6.4.x86_64.rpm
6a990464052f8e78bd611933137d6d1b
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-devel-6.1.8-6.4.x86_64.rpm
0ce607b746d47c40694482abc512ec22
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/perl-PerlMagick-6.1.8-6.4.x86_64.rpm
9b3e3c70d946faf371525b6828caf5cf

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-6.0.7-4.10.x86_64.rpm
6e4ba2acea15e85d78ff5e7fd7355237
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-Magick++-6.0.7-4.10.x86_64.rpm
9916027d97d2ff12e69a637a8bb094c3
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-Magick++-devel-6.0.7-4.10.x86_64.rpm
e63c687fa28dceee4afd9ab3a5269321
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-devel-6.0.7-4.10.x86_64.rpm
1ccfc6d1025165e30217692d77b22ae5
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/perl-PerlMagick-6.0.7-4.10.x86_64.rpm
993e9359229ea21ec4afc16b8ea5aea0

Sources:

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/ImageMagick-6.2.5-16.5.src.rpm
7ea636d2edac4309d4e0991b113989df

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/ImageMagick-6.2.3-4.4.src.rpm
ae5db5025dc418c82516ee2279319ad2

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/src/ImageMagick-6.1.8-6.4.src.rpm
c646be7a64905d052b06951e93c770bf

SUSE LINUX 9.2:
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/src/ImageMagick-6.0.7-4.10.src.rpm
00bf26f2713322a86e63498e49cf48fc

ORIGINAL ADVISORY:
http://www.novell.com/linux/security/advisories/2006_50_imagemagick.html

OTHER REFERENCES:
SA21462:
http://secunia.com/advisories/21462/

SA21615:
http://secunia.com/advisories/21615/

----------------------------------------------------------------------

About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.

----------------------------------------------------------------------

Unsubscribe: Secunia Security Advisories

----------------------------------------------------------------------