[ubuntu/precise] tiff 3.9.5-2ubuntu1 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Apr 4 20:40:27 UTC 2012


tiff (3.9.5-2ubuntu1) precise; urgency=low

  * SECURITY UPDATE: arbitrary code execution via size overflow
    - debian/patches/CVE-2012-1173.patch: use TIFFSafeMultiply in
      libtiff/tif_getimage.c, fix TIFFSafeMultiply in libtiff/tiffiop.h.
    - CVE-2012-1173

Date: Mon, 02 Apr 2012 10:27:24 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/precise/+source/tiff/3.9.5-2ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 02 Apr 2012 10:27:24 -0400
Source: tiff
Binary: libtiff4 libtiffxx0c2 libtiff4-dev libtiff-tools libtiff-opengl libtiff-doc
Architecture: source
Version: 3.9.5-2ubuntu1
Distribution: precise
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libtiff-doc - TIFF manipulation and conversion documentation
 libtiff-opengl - TIFF manipulation and conversion tools
 libtiff-tools - TIFF manipulation and conversion tools
 libtiff4   - Tag Image File Format (TIFF) library
 libtiff4-dev - Tag Image File Format library (TIFF), development files
 libtiffxx0c2 - Tag Image File Format (TIFF) library -- C++ interface
Changes: 
 tiff (3.9.5-2ubuntu1) precise; urgency=low
 .
   * SECURITY UPDATE: arbitrary code execution via size overflow
     - debian/patches/CVE-2012-1173.patch: use TIFFSafeMultiply in
       libtiff/tif_getimage.c, fix TIFFSafeMultiply in libtiff/tiffiop.h.
     - CVE-2012-1173
Checksums-Sha1: 
 e69e7317c4d1378e15a877ad8306a6462c45a5c5 2214 tiff_3.9.5-2ubuntu1.dsc
 16338a98ba88c3194fb1d53c01b39895f35903ae 14389 tiff_3.9.5-2ubuntu1.debian.tar.gz
Checksums-Sha256: 
 1908efa63956fa6f994fb1cdd2af6dcc9cdbd2ac9a1d3f4101296590b0acd3a4 2214 tiff_3.9.5-2ubuntu1.dsc
 56ba058aa2774bd4d88a9791fcc9119acfbcd83abebb296039fe431e8de611b8 14389 tiff_3.9.5-2ubuntu1.debian.tar.gz
Files: 
 0fa21cf189188a34dc2735b04b0fdf68 2214 libs optional tiff_3.9.5-2ubuntu1.dsc
 312db379e1890c548c0d77cae19d53f1 14389 libs optional tiff_3.9.5-2ubuntu1.debian.tar.gz
Original-Maintainer: Jay Berkenbilt <qjb at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iQIcBAEBCgAGBQJPfLDZAAoJEGVp2FWnRL6TiIAP/27TsbH0yHcFKs9WOhZ+SweV
MXbSC7N+PhDxDxhUZpmi7Twv+x0aUNtOFBUqBTv6+UtPYrQeC0p3HA2BZ1OgFojx
Hu2DHlk5PIxsY3cQYtsvXwqDYctt/xd2ySIJ/YM3xuDTj2Ha+O4jBLPXZYigGFvK
GDOI90Ez0UN9NIXEl0lIqt0IdjaMzb7noU4uJDSgw/6ysRAtz4W6x2Qqax8gxSl6
anOdVB3JjNxsmWSQm+FXzsMw8q6IfgbH4NV4i+/QoSux/gPwytInFoGsEOUeBalb
UgUXf+6ZR7HM8fBTk9p0/OuJdvk5yFQzezG033c99k68m36fzB43b7J3ORCpyVPS
uLvvfv78jsVkcwV0Rq5lRbBL55GAaLM1Par97rF9frVFrcGRRXESrUiedATLCpc/
Quo26fOqLOb4B718TfklXiUEQ76xne/1VdOjpAfuW1fiX15W5BbDm/ITSDp2wpiL
OurKlhFbOfuuH9kxvH/MI/foORSlRjgql+qyGgqPbmeYOagi8bXZ+g7NMTPehecP
osN/zZJ6m7yU+dR6OxHH62KIhU8ZZDvI6itsH/IGp/wjpUOYIBMapnbmva1okonC
wiWn/RPbUaPFiQcpyZwnDV+9ZKd3jMFihY1NXapGJq37Tr/EprcFvPXaLn8MBakF
XR5CMVgf2rrVcu1U2L5g
=jqa4
-----END PGP SIGNATURE-----


More information about the Precise-changes mailing list