Ubuntu Security Notice USN-337-1
17th August, 2006
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 6.06 LTS
- Ubuntu 5.10
- Ubuntu 5.04
Damian Put discovered a buffer overflow in imagemagick's SGI file
format decoder. By tricking an user or automated system into
processing a specially crafted SGI image, this could be exploited to
execute arbitrary code with the user's privileges.
The problem can be corrected by updating your system to the following package version:
- Ubuntu 6.06 LTS:
- libmagick9 6:188.8.131.52-0.6ubuntu0.1
- Ubuntu 5.10:
- libmagick6 6:184.108.40.206-1ubuntu1.2
- Ubuntu 5.04:
- libmagick6 6:220.127.116.11-2.1ubuntu1.3
To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.
After a standard system upgrade you need to reboot your computer to
effect the necessary changes.