• PHP ImageMagick vulnerability

    From boo_ubuntu@21:4/110 to Ubuntu Users on Tuesday, October 20, 2020 16:10:03
    php-imagick vulnerability

    A security issue affects these releases of Ubuntu and its
    derivatives:

    * Ubuntu 18.04 LTS

    Summary

    PHP ImageMagick could be made to crash if it received specially
    crafted input.

    Software Description

    * php-imagick - PHP extension to create and modify images using
    the ImageMagick API

    Details

    It was discovered that PHP ImageMagick extension didn't check the
    address used by an array. An attacker could use this issue to
    cause PHP ImageMagick to crash, resulting in a denial of service.

    Update instructions

    The problem can be corrected by updating your system to the
    following package versions:

    Ubuntu 18.04 LTS
    php-imagick - 3.4.3~rc2-2ubuntu4.1

    To update your system, please follow these instructions:
    https://wiki.ubuntu.com/Security/Upgrades.

    In general, a standard system update will make all the necessary
    changes.

    References

    * CVE-2019-11037

    --- Mystic BBS v1.12 A46 (Linux/64)
    * Origin: BZ&BZ BBS (21:4/110)