| Description: | The remote host is missing an update to imagemagick announced via advisory USN-523-1.
A security issue affects the following Ubuntu releases:
Ubuntu 6.06 LTS Ubuntu 6.10 Ubuntu 7.04
This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu.
Details follow:
Multiple vulnerabilities were found in the image decoders of ImageMagick. If a user or automated system were tricked into processing a malicious DCM, DIB, XBM, XCF, or XWD image, a remote attacker could execute arbitrary code with user privileges.
Solution: The problem can be corrected by upgrading your system to the following package versions:
Ubuntu 6.06 LTS: libmagick9 6:6.2.4.5-0.6ubuntu0.7
Ubuntu 6.10: libmagick9 7:6.2.4.5.dfsg1-0.10ubuntu0.4
Ubuntu 7.04: libmagick9 7:6.2.4.5.dfsg1-0.14ubuntu0.2
In general, a standard system upgrade is sufficient to affect the necessary changes.
http://www.securityspace.com/smysecure/catid.html?in=USN-523-1
Risk factor : Critical |