---------------------------------------------------------------------- Want to work within IT-Security? Secunia is expanding its team of highly skilled security experts. We will help with relocation and obtaining a work permit. Currently the following type of positions are available: http://secunia.com/quality_assurance_analyst/ http://secunia.com/web_application_security_specialist/ http://secunia.com/hardcore_disassembler_and_reverse_engineer/ ---------------------------------------------------------------------- TITLE: SUSE update for ImageMagick SECUNIA ADVISORY ID: SA21832 VERIFY ADVISORY: http://secunia.com/advisories/21832/ CRITICAL: Moderately critical IMPACT: DoS, System access WHERE: >From remote OPERATING SYSTEM: SUSE Linux 10 http://secunia.com/product/6221/ SUSE Linux 10.1 http://secunia.com/product/10796/ SUSE Linux 9.2 http://secunia.com/product/4258/ SUSE Linux 9.3 http://secunia.com/product/4933/ SuSE Linux Desktop 1.x http://secunia.com/product/2002/ SuSE Linux Openexchange Server 4.x http://secunia.com/product/2001/ SuSE Linux Standard Server 8 http://secunia.com/product/2526/ DESCRIPTION: SUSE has issued an update for ImageMagick. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a user's system. For more information: SA21462 SA21615 SOLUTION: Apply updated packages. x86 Platform: SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-6.2.5-16.5.i586.rpm 5f690184a3fd42e008c692ca32420c14 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-Magick++-6.2.5-16.5.i586.rpm 875adc1e047e4229cf38c43e2e4440f6 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-Magick++-devel-6.2.5-16.5.i586.rpm 77f37b959830786ca39d490082f42352 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/ImageMagick-devel-6.2.5-16.5.i586.rpm 4427316e60ac1d91d11eaf870a165a21 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/i586/perl-PerlMagick-6.2.5-16.5.i586.rpm 52983ec2c90872eeef642bd3185740d1 SUSE LINUX 10.0: ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-6.2.3-4.4.i586.rpm eb244ad6713f90513c8f07f69159c38a ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-Magick++-6.2.3-4.4.i586.rpm eac05c08d9e325b0819aa5cbc52ab6c5 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-Magick++-devel-6.2.3-4.4.i586.rpm f16bb6b5027e3aac4c6a5c79b5b9d112 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/ImageMagick-devel-6.2.3-4.4.i586.rpm 375301f05f9e3afc0666468d05e779c9 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/i586/perl-PerlMagick-6.2.3-4.4.i586.rpm a9b9ccdec88a4266f6b5cacf236156b4 SUSE LINUX 9.3: ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-6.1.8-6.4.i586.rpm e6894d0d2f42caa3f28bef35d3fb2f16 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-Magick++-6.1.8-6.4.i586.rpm c2e42c42c3f6fdbb155cc90a23678383 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-Magick++-devel-6.1.8-6.4.i586.rpm 010ed22ea64776dc4f23b1363d6ab3b9 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/ImageMagick-devel-6.1.8-6.4.i586.rpm 8cf0e927fb535a1c9b3f88bb70f66139 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/i586/perl-PerlMagick-6.1.8-6.4.i586.rpm e0cf15734aa3b3f816cad715a3237715 SUSE LINUX 9.2: ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-6.0.7-4.10.i586.rpm 485f3cce181b3bbb0383a3741b65a324 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-Magick++-6.0.7-4.10.i586.rpm ea5925b9721d9d268e15811aaed0de02 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-Magick++-devel-6.0.7-4.10.i586.rpm d5e642cb1007af1557750e4882925777 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ImageMagick-devel-6.0.7-4.10.i586.rpm 0a5d22155dd3c62be4d544ffc588ee9f ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/perl-PerlMagick-6.0.7-4.10.i586.rpm c8f06aede187803cc28b3837ba3df4ac Power PC Platform: SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-6.2.5-16.5.ppc.rpm c93639232b7ea9f89d4e07e581b02165 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-Magick++-6.2.5-16.5.ppc.rpm 6d7350f42d29fe3c8d8b61e9d19f4992 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-Magick++-devel-6.2.5-16.5.ppc.rpm 3f53b0f21ff82a7047ebcebb8156dc3c ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/ImageMagick-devel-6.2.5-16.5.ppc.rpm cbfd84e86d3d84dd0eca1d18dd8d174d ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/perl-PerlMagick-6.2.5-16.5.ppc.rpm 6b7ceacc6943720e26def3bd89178979 SUSE LINUX 10.0: ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-6.2.3-4.4.ppc.rpm a019f49d450751d8925904276dc8a96e ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-Magick++-6.2.3-4.4.ppc.rpm 1aa1dd6441844e1b7b27b1b148d97531 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-Magick++-devel-6.2.3-4.4.ppc.rpm db7787929580024853e4ce4bb2713463 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/ImageMagick-devel-6.2.3-4.4.ppc.rpm 21ea81e9ede5e9690231ff455cb46257 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/ppc/perl-PerlMagick-6.2.3-4.4.ppc.rpm 85769d199769b066282c7a0848e07072 x86-64 Platform: SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-6.2.5-16.5.x86_64.rpm eeb689ea09f8dd351c2915e79f1d1d05 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-Magick++-6.2.5-16.5.x86_64.rpm 475f0e4c441dbe534252850a393d799a ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-Magick++-devel-6.2.5-16.5.x86_64.rpm edb98a197924dcffaf6cf0b1e40bad15 ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/ImageMagick-devel-6.2.5-16.5.x86_64.rpm 265a8d36b62f176bce69bdad7d42b29c ftp://ftp.suse.com/pub/suse/update/10.1/rpm/x86_64/perl-PerlMagick-6.2.5-16.5.x86_64.rpm 6c05eff3c6754c28c7246952f5c0ccef SUSE LINUX 10.0: ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-6.2.3-4.4.x86_64.rpm 13adfc596917d5cc6040c70484721948 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-Magick++-6.2.3-4.4.x86_64.rpm 1e4f5f29ea4b6c14e10721297cf1becf ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-Magick++-devel-6.2.3-4.4.x86_64.rpm 4cfae138dd196c3dc080e0a9b9c5efa6 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/ImageMagick-devel-6.2.3-4.4.x86_64.rpm a62a8257ef807d1a3076e217b2f28990 ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/x86_64/perl-PerlMagick-6.2.3-4.4.x86_64.rpm b82ffae380e38281e3fa30afbf576a2a SUSE LINUX 9.3: ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-6.1.8-6.4.x86_64.rpm 78335adff546de7155987c67740c13b0 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-Magick++-6.1.8-6.4.x86_64.rpm b5a9ae25cc1cb462c954fc77e72becea ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-Magick++-devel-6.1.8-6.4.x86_64.rpm 6a990464052f8e78bd611933137d6d1b ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/ImageMagick-devel-6.1.8-6.4.x86_64.rpm 0ce607b746d47c40694482abc512ec22 ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/x86_64/perl-PerlMagick-6.1.8-6.4.x86_64.rpm 9b3e3c70d946faf371525b6828caf5cf SUSE LINUX 9.2: ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-6.0.7-4.10.x86_64.rpm 6e4ba2acea15e85d78ff5e7fd7355237 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-Magick++-6.0.7-4.10.x86_64.rpm 9916027d97d2ff12e69a637a8bb094c3 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-Magick++-devel-6.0.7-4.10.x86_64.rpm e63c687fa28dceee4afd9ab3a5269321 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ImageMagick-devel-6.0.7-4.10.x86_64.rpm 1ccfc6d1025165e30217692d77b22ae5 ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/perl-PerlMagick-6.0.7-4.10.x86_64.rpm 993e9359229ea21ec4afc16b8ea5aea0 Sources: SUSE LINUX 10.1: ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/ImageMagick-6.2.5-16.5.src.rpm 7ea636d2edac4309d4e0991b113989df SUSE LINUX 10.0: ftp://ftp.suse.com/pub/suse/i386/update/10.0/rpm/src/ImageMagick-6.2.3-4.4.src.rpm ae5db5025dc418c82516ee2279319ad2 SUSE LINUX 9.3: ftp://ftp.suse.com/pub/suse/i386/update/9.3/rpm/src/ImageMagick-6.1.8-6.4.src.rpm c646be7a64905d052b06951e93c770bf SUSE LINUX 9.2: ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/src/ImageMagick-6.0.7-4.10.src.rpm 00bf26f2713322a86e63498e49cf48fc ORIGINAL ADVISORY: http://www.novell.com/linux/security/advisories/2006_50_imagemagick.html OTHER REFERENCES: SA21462: http://secunia.com/advisories/21462/ SA21615: http://secunia.com/advisories/21615/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ----------------------------------------------------------------------