MantisBT

View Issue Details Jump to Notes ] Issue History ] Print ]
IDProjectCategoryView StatusDate SubmittedLast Update
0000146MEGA[All Projects] Feedbackpublic2016-05-05 10:282016-05-06 07:31
Reporterguest 
Assigned Togstecher 
PrioritynormalSeverityminorReproducibilityhave not tried
StatusresolvedResolutionno change required 
PlatformOS 
Product VersionMEGA 11 (Graphical Interface version) 
Target VersionFixed in Version 
Summary0000146: ImageMajik Security Vulnerability
DescriptionUS-CERT has reported that there is a security vulnerability in ImageMajik (Vulnerability Note VU#250519 ImageMagick does not properly validate input before processing images using a delegate). The recommended remediation is to install ImageMajik version 7.0.1-1. Will installation of the newer version of ImageMajik adversely affect MEGA6? Alternatively, if we upgrade to MEGA7 will that also resolve the issue?
TagsNo tags attached.
Attach Tags (Separate by ",")
First NameFrank
Last NameNiagro
Emailfrank.niagro@fsis.usda.gov
Confirm Emailfrank.niagro@fsis.usda.gov
Attached Files

- Relationships

-  Notes
(0000038)
Nikita Vikhrev (reporter)
1969-12-31 17:33

I could not reproduce it in MY latest version. I might have fixed it sometime ago.
(0000040)
gstecher (administrator)
1969-12-31 17:33

I am unable to reproduce this error using the latest code recieved 12-01-03. I am going to close out the bug.

edited on: 12-01 14:13
(0003660)
gstecher (administrator)
2016-05-06 07:31

Hi Frank,

I am writing in response to your question regarding the MEGA software. Installing the newest version of ImageMagick should not affect MEGA6. However, a better solution may be to first, uninstall MEGA6, and then install MEGA7 which does not use ImageMagick at all.

--
Best regards,

Glen Stecher
Institute for Genomics and Evolutionary Medicine
igem.temple.edu

- Issue History
Date Modified Username Field Change
2016-05-05 10:28 guest New Issue
2016-05-06 07:31 gstecher Note Added: 0003660
2016-05-06 07:31 gstecher Status new => resolved
2016-05-06 07:31 gstecher Resolution open => no change required
2016-05-06 07:31 gstecher Assigned To => gstecher


Copyright © 2000 - 2024 MantisBT Team
Powered by Mantis Bugtracker