-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Jan 2018 20:53:45 +0000 Source: tiff Binary: libtiff5 libtiffxx5 libtiff5-dev libtiff-tools libtiff-opengl libtiff-doc Architecture: mipsel Version: 4.0.3-12.3+deb8u5 Distribution: jessie-security Urgency: high Maintainer: mipsel Build Daemon (mipsel-aql-03) Changed-By: Moritz Muehlenhoff Description: libtiff-doc - TIFF manipulation and conversion documentation libtiff-opengl - TIFF manipulation and conversion tools libtiff-tools - TIFF manipulation and conversion tools libtiff5 - Tag Image File Format (TIFF) library libtiff5-dev - Tag Image File Format library (TIFF), development files libtiffxx5 - Tag Image File Format (TIFF) library -- C++ interface Closes: 866109 868513 872607 873879 873880 885985 Changes: tiff (4.0.3-12.3+deb8u5) jessie-security; urgency=high . [ Laszlo Boszormenyi (GCS) ] * Fix CVE-2017-11335: heap based buffer write overflow in tiff2pdf (closes: #868513). * Fix CVE-2017-12944: OOM prevention in TIFFReadDirEntryArray() (closes: #872607). * Fix CVE-2017-13726: reachable assertion abort in TIFFWriteDirectorySec() (closes: #873880). * Fix CVE-2017-13727: reachable assertion abort in TIFFWriteDirectoryTagSubifd() (closes: #873879). * Fix CVE-2017-18013: NULL pointer dereference in TIFFPrintDirectory() (closes: #885985). * Fix CVE-2017-9935: heap-based buffer overflow in the t2p_write_pdf() function (closes: #866109). . [ Moritz Muehlenhoff ] * CVE-2016-10371 Checksums-Sha1: dcd37b403c138cacc083b7fd8a14539a29535fec 206636 libtiff5_4.0.3-12.3+deb8u5_mipsel.deb 3893bf84b305ce7cee0321595e7c47a05e6dd6d6 81340 libtiffxx5_4.0.3-12.3+deb8u5_mipsel.deb 3cd952dc346c347e9697dc439f01a60da70efd20 346016 libtiff5-dev_4.0.3-12.3+deb8u5_mipsel.deb d319cae5689a3142bce809078f57b7eee7a6b43a 267016 libtiff-tools_4.0.3-12.3+deb8u5_mipsel.deb 762571991d2533fff7b57e504a88247aa80a6335 85828 libtiff-opengl_4.0.3-12.3+deb8u5_mipsel.deb Checksums-Sha256: 3b473ee576c12389310b800809881149f1af29016a9cb6d04954f169acc5b3f2 206636 libtiff5_4.0.3-12.3+deb8u5_mipsel.deb 5260e3230f178a6daace808de9e42ea9d357612d34311d5dc8ee6bb9217f0414 81340 libtiffxx5_4.0.3-12.3+deb8u5_mipsel.deb 5d05f561983758278f657e567f284e47500ad7b478e473b9c9a202a9899bc7c8 346016 libtiff5-dev_4.0.3-12.3+deb8u5_mipsel.deb 42e51f94e06e17778869ab613d733317308d9af6fbaa79de4ba243873d975e90 267016 libtiff-tools_4.0.3-12.3+deb8u5_mipsel.deb af531590b4be771c3a3826d4a1c9498fd7bf508038fd1eeb04bc10456342d5f8 85828 libtiff-opengl_4.0.3-12.3+deb8u5_mipsel.deb Files: 7f860e3a8a4d9f7c9bf9ed94ad6abbd8 206636 libs optional libtiff5_4.0.3-12.3+deb8u5_mipsel.deb 5b833ed269601fde6d033a3e5ba1d37c 81340 libs optional libtiffxx5_4.0.3-12.3+deb8u5_mipsel.deb ce7cef8780f6bf89c5e5c377d19827e7 346016 libdevel optional libtiff5-dev_4.0.3-12.3+deb8u5_mipsel.deb 52c36e4b977afc608d5124597757eed5 267016 graphics optional libtiff-tools_4.0.3-12.3+deb8u5_mipsel.deb f43ffebea7a868f420a369fb788dbc2f 85828 graphics optional libtiff-opengl_4.0.3-12.3+deb8u5_mipsel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEMNcrKXOI6nCfFTtXkdga1SHtgAMFAlprvxEACgkQkdga1SHt gAPwWhAApLMzOq31Keal/GZUQl1RSoBQSWibAT1teCYhT2Za2yD99FNjTR3K1Wyl mAWX2HVFdF0M+GpQf2h8TyTqtapZn9X2WTM22aOarlMGCpfl4uBfSCNuxUEabCn+ 5vHahJE87w8Ljqlzp9PNw/llmUMiJizItKLiBWr6shyPqV5w1bWQHRjbII8Nuial /OpaPHb/lDN01yrJ71pjm1lCgoWzFfoUxMirIiVp0/Uf6cJwndGM25gKmx11i/L0 ZPmGa/5N0F3/Bj6FmOb43JvwPWDvrPzD+CCXeM+jOGioqjYp4Z8C7LYu9E/HO5GV K6sQF+IJqi/vZRgcsSZFLZ1055ZyvDtKN4gD9VB40luh3hZ5KkhVaTv3SJfE+VmC JGRinQc+tTqcNEH2ULCOTNASDveDTexJnDuAXoxNZXRM/oJifWdKgvIqbbhRopG+ MBVhUpnBCDBDYPkEpnl+BPu1KOTAx1AaMIgjSwh6/pOqtk6WTFw+tMiTguvk3prY SQr2OoJJ3LFcd6QHLWQUd1x7okbGPSSS9AOj1G98TTkg1pvbkxeL7BoCo6jxs/kH V1xOoNKmpCuXRjK+BR/2by57AIFMTUKgq5WfFsHr0spyjpfPjnMyE6D9vyLKFzTx 6TOCvaoPSmh+uUhgG4j/mcHCMjM3ulGq8hAuXHgu8Fe6gMy+73c= =1MaD -----END PGP SIGNATURE-----