| 2 | |
| 3 | Security Issues: |
| 4 | |
| 5 | {{{ |
| 6 | CVE-2015-8894 (tgs processing issue: Double free in coders/tga.c) |
| 7 | CVE-2015-8895 |
| 8 | CVE-2015-8896 (integer truncation issue) |
| 9 | CVE-2016-5239 (ImageMagick, GraphicsMagick: Gnuplot delegate vulnerability allowing command injection). |
| 10 | CVE-2015-8897 (Out of bounds error in SpliceImage.) |
| 11 | CVE-2015-8898 (Prevent null pointer access in magick/constitute.c) |
| 12 | CVE-2014-9804 (Avoid a DoS in vision.c due to an infinite loop.) |
| 13 | CVE-2014-9805 (Avoid a SEGV due to a corrupted pnm file.) |
| 14 | CVE-2014-9806 (Do not leak fd due to corrupted file.) |
| 15 | CVE-2014-9807 (Fix a double free in pdb coder.) |
| 16 | CVE-2014-9808 (Fix a SEGV due to corrupted dpc images.) |
| 17 | CVE-2014-9809 (Fix a SEGV due to a corrupted xwd image.) |
| 18 | CVE-2014-9810 (Fix a SEGV in dpx file handler.) |
| 19 | CVE-2014-9811 (Fix a SEGV in malformed xwd file handler.) |
| 20 | CVE-2014-9812 (Avoid a NULL pointer dereference in ps file handling.) |
| 21 | CVE-2014-9813 (Fix a crash with corrupted viff file.) |
| 22 | CVE-2014-9814 (Fix a NULL pointer dererference in wpg file handling.) |
| 23 | CVE-2014-9815 (Do not continue on corrupted wpg file.) |
| 24 | CVE-2014-9816 (Avoid an out-of-bounds access in viff image.) |
| 25 | CVE-2014-9817 (Avoid a heap buffer overflow in pdb file handling.) |
| 26 | CVE-2014-9818 (Avoid an out of bounds access on malformed sun file.) |
| 27 | CVE-2014-9819 (Avoid heap overflow in palm files.) |
| 28 | CVE-2014-9820 (Avoid heap overflow in pnm files.) |
| 29 | CVE-2014-9821 (Avoid heap overflow in xpm files.) |
| 30 | CVE-2014-9822 (Fix heap overflow in quantum files.) |
| 31 | CVE-2014-9823 (Fix heap overflow in palm files.) |
| 32 | CVE-2014-9824 (Fix heap overflow in psd files.) |
| 33 | CVE-2014-9825 (Fix handling of corrupted psd file.) |
| 34 | CVE-2014-9826 (Fix handling of corrupted sun file.) |
| 35 | CVE-2014-9827 (Fix handling of corrupted xpm file.) |
| 36 | CVE-2014-9828 (Fix handling of corrupted (too many colors) psd file.) |
| 37 | CVE-2014-9829 (FIx out-of-bounds access in sun file.) |
| 38 | CVE-2014-9830 (Fix handling of corrupted sun file.) |
| 39 | CVE-2014-9831 (Fix handling of corrupted wpg file.) |
| 40 | CVE-2014-9832 (Fix heap overflow in pcx file.) |
| 41 | CVE-2014-9833 (Fix heap overflow in psd file.) |
| 42 | CVE-2014-9834 (Fix heap overflow in pict file.) |
| 43 | CVE-2014-9835 (Fix heap overflow in wpf file.) |
| 44 | CVE-2014-9836 (Fix heap overflow in xpm file.) |
| 45 | CVE-2014-9837 (Add additional PNM sanity checks.) |
| 46 | CVE-2014-9838 (Avoid a crash to out of memory in magick/cache.c) |
| 47 | CVE-2014-9839 (Fix a theoretical out-of-bounds access in magick/colormap-private.h) |
| 48 | CVE-2014-9840 (Fix an out-of-bounds access in palm file.) |
| 49 | CVE-2014-9841 (Fixed throwing of exceptions in psd handling.) |
| 50 | CVE-2014-9842 (Memory leak.) |
| 51 | CVE-2014-9843 (Fixed boundary checks in DecodePSDPixels.) |
| 52 | CVE-2014-9844 (Fixed another out-of-bound problem in rle file.) |
| 53 | CVE-2014-9845 (Fix crash due to corrupted dib file.) |
| 54 | CVE-2014-9846 (Added checks to prevent overflow in rle file.) |
| 55 | CVE-2014-9847 (Don't try to handle a "previous" image in the JNG decoder.) |
| 56 | CVE-2014-9848 (Avoid a memory leak in quantum management.) |
| 57 | CVE-2014-9849 (Avoid a crash in png coder.) |
| 58 | CVE-2014-9850 |
| 59 | CVE-2014-9851 (In psd file handling fixed parsing resource block and avoid a crash.) |
| 60 | CVE-2014-9852 (In cache fix usage of object after it has been destroyed.) |
| 61 | CVE-2014-9853 (Avoid a memory leak in rle file handling.) |
| 62 | CVE-2014-9854 |
| 63 | }}} |