Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
https://bugzilla.redhat.com/show_bug.cgi?id=844105 http://secunia.com/advisories/50090
http://xforce.iss.net/xforce/xfdb/77259
http://osvdb.org/show/osvdb/84323
http://www.vuxml.org/freebsd/98690c45-0361-11e2-a391-000c29033c32.html
Insight
The following packages are affected:
ImageMagick
ImageMagick-nox11
GraphicsMagick
GraphicsMagick-nox11
CVE-2012-3438
The Magick_png_malloc function in coders/png.c in GraphicsMagick 6.7.8-6 does not use the proper variable type for the allocation size, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG file that triggers incorrect memory allocation.
Severity
Classification
-
CVE CVE-2012-3438 -
CVSS Base Score: 4.3
AV:N/AC:M/Au:N/C:N/I:N/A:P
Related Vulnerabilities