tiff 4.0.8-5ubuntu0.1 source package in Ubuntu

Changelog

tiff (4.0.8-5ubuntu0.1) artful-security; urgency=medium

  * SECURITY UPDATE: heap-based buffer overflow in t2p_write_pdf
    - debian/patches/CVE-2017-9935-1.patch: fix transfer function handling
      in libtiff/tif_dir.c, tools/tiff2pdf.c.
    - debian/patches/CVE-2017-9935-2.patch: fix incorrect type for transfer
      table in tools/tiff2pdf.c.
    - CVE-2017-9935
  * SECURITY UPDATE: DoS in TIFFOpen
    - debian/patches/CVE-2017-11613-1.patch: avoid memory exhaustion in
      libtiff/tif_dirread.c.
    - debian/patches/CVE-2017-11613-2.patch: rework fix in
      libtiff/tif_dirread.c.
    - CVE-2017-11613
  * SECURITY UPDATE: DoS in TIFFReadDirEntryArray
    - debian/patches/CVE-2017-12944.patch: add protection against excessive
      memory allocation attempts in libtiff/tif_dirread.c.
    - CVE-2017-12944
  * SECURITY UPDATE: TIFFSetupStrips heap overflow in pal2rgb
    - debian/patches/CVE-2017-17095.patch: add workaround to
      tools/pal2rgb.c.
    - CVE-2017-17095
  * SECURITY UPDATE: null pointer dereference
    - debian/patches/CVE-2017-18013.patch: fix null pointer dereference in
      libtiff/tif_print.c.
    - CVE-2017-18013
  * SECURITY UPDATE: DoS via resource consumption
    - debian/patches/CVE-2018-5784.patch: fix infinite loop in
      contrib/addtiffo/tif_overview.c, tools/tiff2pdf.c, tools/tiffcrop.c.
    - CVE-2018-5784

 -- Marc Deslauriers <email address hidden>  Thu, 22 Mar 2018 09:52:02 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Artful
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
tiff_4.0.8.orig.tar.gz 2.0 MiB 59d7a5a8ccd92059913f246877db95a2918e6c04fb9d43fd74e5c3390dac2910
tiff_4.0.8-5ubuntu0.1.debian.tar.xz 29.5 KiB 1c96c172c681bb7070aad81515ba33722588a5c4ef2c359c134372eb1ca79c71
tiff_4.0.8-5ubuntu0.1.dsc 2.2 KiB a4c7faf50c11114ef3410c634f95f10165114d312e245b0caee77842504382cc

View changes file

Binary packages built by this source

libtiff-doc: No summary available for libtiff-doc in ubuntu artful.

No description available for libtiff-doc in ubuntu artful.

libtiff-opengl: No summary available for libtiff-opengl in ubuntu artful.

No description available for libtiff-opengl in ubuntu artful.

libtiff-opengl-dbgsym: No summary available for libtiff-opengl-dbgsym in ubuntu artful.

No description available for libtiff-opengl-dbgsym in ubuntu artful.

libtiff-tools: No summary available for libtiff-tools in ubuntu artful.

No description available for libtiff-tools in ubuntu artful.

libtiff-tools-dbgsym: No summary available for libtiff-tools-dbgsym in ubuntu artful.

No description available for libtiff-tools-dbgsym in ubuntu artful.

libtiff5: No summary available for libtiff5 in ubuntu artful.

No description available for libtiff5 in ubuntu artful.

libtiff5-dbgsym: No summary available for libtiff5-dbgsym in ubuntu artful.

No description available for libtiff5-dbgsym in ubuntu artful.

libtiff5-dev: No summary available for libtiff5-dev in ubuntu artful.

No description available for libtiff5-dev in ubuntu artful.

libtiffxx5: No summary available for libtiffxx5 in ubuntu artful.

No description available for libtiffxx5 in ubuntu artful.

libtiffxx5-dbgsym: No summary available for libtiffxx5-dbgsym in ubuntu artful.

No description available for libtiffxx5-dbgsym in ubuntu artful.