PublicDateAtUSN: 2019-02-04 Candidate: CVE-2019-7398 PublicDate: 2019-02-05 00:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-7398 https://ubuntu.com/security/notices/USN-4034-1 Description: In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c. Ubuntu-Description: Notes: mdeslaur> add missing semicolon to patch Bugs: https://github.com/ImageMagick/ImageMagick/issues/1453 Priority: negligible Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_imagemagick: upstream: https://github.com/ImageMagick/ImageMagick6/commit/20c360e14cd5d70b5bbd0b54afa241eae4aec45d (im6) upstream_imagemagick: needs-triage precise/esm_imagemagick: DNE trusty_imagemagick: ignored (reached end-of-life) trusty/esm_imagemagick: DNE (trusty was needed) xenial_imagemagick: released (8:6.8.9.9-7ubuntu5.14) esm-infra/xenial_imagemagick: released (8:6.8.9.9-7ubuntu5.14) bionic_imagemagick: released (8:6.9.7.4+dfsg-16ubuntu6.7) cosmic_imagemagick: released (8:6.9.10.8+dfsg-1ubuntu2.2) disco_imagemagick: released (8:6.9.10.14+dfsg-7ubuntu2.2) devel_imagemagick: released (8:6.9.10.23+dfsg-2.1ubuntu2)