PublicDateAtUSN: 2019-02-04 Candidate: CVE-2019-7395 PublicDate: 2019-02-05 00:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7395 https://ubuntu.com/security/notices/USN-4034-1 Description: In ImageMagick before 7.0.8-25, a memory leak exists in WritePSDChannel in coders/psd.c. Ubuntu-Description: Notes: Bugs: https://github.com/ImageMagick/ImageMagick/issues/1451 Priority: negligible Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_imagemagick: upstream: https://github.com/ImageMagick/ImageMagick6/commit/d646562fbfb8bd230879fef7d67a62bf28bb1e19 (im6) upstream_imagemagick: needs-triage precise/esm_imagemagick: DNE trusty_imagemagick: ignored (reached end-of-life) trusty/esm_imagemagick: DNE (trusty was needed) xenial_imagemagick: not-affected (code not present) esm-infra/xenial_imagemagick: not-affected (code not present) bionic_imagemagick: released (8:6.9.7.4+dfsg-16ubuntu6.7) cosmic_imagemagick: released (8:6.9.10.8+dfsg-1ubuntu2.2) disco_imagemagick: released (8:6.9.10.14+dfsg-7ubuntu2.2) devel_imagemagick: released (8:6.9.10.23+dfsg-2.1ubuntu2)