GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Tue Jul 11, 2017 3:26 am Post subject: [ GLSA 201706-06 ] ImageWorsener |
|
|
Gentoo Linux Security Advisory
Title: ImageWorsener: Multiple vulnerabilities (GLSA 201706-06)
Severity: normal
Exploitable: remote
Date: 2017-06-06
Bug(s): #618014
ID: 201706-06
Synopsis
Multiple vulnerabilities have been found in ImageWorsener, the
worst of which allows remote attackers to cause a Denial of Service
condition or have other unspecified impact.
Background
ImageWorsener is a cross-platform command-line utility and library for
image scaling and other image processing.
Affected Packages
Package: media-gfx/imageworsener
Vulnerable: < 1.3.1
Unaffected: >= 1.3.1
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in ImageWorsener. Please
review the CVE identifiers referenced below for details.
Impact
A remote attacker could entice a user to process a specially crafted
image file using ImageWorsener, possibly resulting in a Denial of Service
condition or have other unspecified impacts.
Workaround
There is no known workaround at this time.
Resolution
All ImageWorsener users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=media-gfx/imageworsener-1.3.1"
|
References
CVE-2017-7452
CVE-2017-7453
CVE-2017-7454
CVE-2017-7939
CVE-2017-7940
CVE-2017-7962
CVE-2017-8325
CVE-2017-8326
CVE-2017-8327 |
|