Security update for ImageMagick
| Announcement ID: | SUSE-SU-2022:3119-1 | 
|---|---|
| Rating: | moderate | 
| References: | |
| Cross-References: | |
| CVSS scores: | 
 | 
| Affected Products: | 
 | 
An update that solves two vulnerabilities can now be installed.
Description:
This update for ImageMagick fixes the following issues:
- CVE-2021-20224: Fixed an integer overflow that could be triggered via a crafted file (bsc#1202800).
- CVE-2022-2719: Fixed a reachable assertion that could lead to denial of service via a crafted file (bsc#1202250).
Patch Instructions:
        To install this SUSE  update use the SUSE recommended
        installation methods like YaST online_update or "zypper patch".
        Alternatively you can run the command listed for your product:
    
- 
                openSUSE Leap 15.4
                
                    
                        
 zypper in -t patch openSUSE-SLE-15.4-2022-3119=1
- 
                Desktop Applications Module 15-SP3
                
                    
                        
 zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP3-2022-3119=1
- 
                Development Tools Module 15-SP3
                
                    
                        
 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP3-2022-3119=1
Package List:
- 
                    openSUSE Leap 15.4 (x86_64)
                    - libMagickWand-7_Q16HDRI6-32bit-debuginfo-7.0.7.34-150200.10.36.1
- libMagick++-7_Q16HDRI4-32bit-debuginfo-7.0.7.34-150200.10.36.1
- libMagickWand-7_Q16HDRI6-32bit-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-32bit-7.0.7.34-150200.10.36.1
- libMagick++-7_Q16HDRI4-32bit-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-32bit-debuginfo-7.0.7.34-150200.10.36.1
 
- 
                    openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64)
                    - libMagick++-7_Q16HDRI4-debuginfo-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.36.1
- libMagickWand-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.36.1
- libMagick++-7_Q16HDRI4-7.0.7.34-150200.10.36.1
- libMagickWand-7_Q16HDRI6-7.0.7.34-150200.10.36.1
 
- 
                    Desktop Applications Module 15-SP3 (aarch64 ppc64le s390x x86_64)
                    - libMagick++-7_Q16HDRI4-debuginfo-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-7.0.7.34-150200.10.36.1
- ImageMagick-7.0.7.34-150200.10.36.1
- libMagickCore-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.36.1
- libMagickWand-7_Q16HDRI6-debuginfo-7.0.7.34-150200.10.36.1
- ImageMagick-debuginfo-7.0.7.34-150200.10.36.1
- ImageMagick-devel-7.0.7.34-150200.10.36.1
- ImageMagick-debugsource-7.0.7.34-150200.10.36.1
- libMagick++-7_Q16HDRI4-7.0.7.34-150200.10.36.1
- ImageMagick-config-7-upstream-7.0.7.34-150200.10.36.1
- libMagick++-devel-7.0.7.34-150200.10.36.1
- ImageMagick-config-7-SUSE-7.0.7.34-150200.10.36.1
- libMagickWand-7_Q16HDRI6-7.0.7.34-150200.10.36.1
 
- 
                    Development Tools Module 15-SP3 (aarch64 ppc64le s390x x86_64)
                    - perl-PerlMagick-debuginfo-7.0.7.34-150200.10.36.1
- ImageMagick-debugsource-7.0.7.34-150200.10.36.1
- perl-PerlMagick-7.0.7.34-150200.10.36.1
- ImageMagick-debuginfo-7.0.7.34-150200.10.36.1
 
