[magick-developers] Multiple Vendor ImageMagick DCM and XWD Buffer Overflow Vulnerabilities

jcupitt at gmail.com jcupitt at gmail.com
Fri May 18 08:45:46 PDT 2007


On 5/18/07, Craig Harman <charman at rcbi.rochester.edu> wrote:
> On 5/18/07 10:36 AM, omicronpersei8 at imagemagick.org wrote:
> > See http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=496.
> > ImageMagick 6.3.3-5 and above do not have this vulnerability and most
> > vendors have issued updated ImageMagick releases with this vulnerability
> > fixed for earlier releases of the package (pre 6.3.3).
>
> I either compile ImageMagick from source or use the pre-built package
> for OS X that is available on the ImageMagick website.  I don't have a
> vendor that issues updated packages for my OS.  Do the ImageMagick

Not a direct answer to your question, but if you get ImageMagick
though macports then it will be updated for you:

http://www.macports.org/

John


More information about the Magick-developers mailing list