-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Jan 2018 20:53:45 +0000 Source: tiff Binary: libtiff5 libtiffxx5 libtiff5-dev libtiff-tools libtiff-opengl libtiff-doc Architecture: powerpc Version: 4.0.3-12.3+deb8u5 Distribution: jessie-security Urgency: high Maintainer: powerpc Build Daemon (powerpc-unicamp-01) Changed-By: Moritz Muehlenhoff Description: libtiff-doc - TIFF manipulation and conversion documentation libtiff-opengl - TIFF manipulation and conversion tools libtiff-tools - TIFF manipulation and conversion tools libtiff5 - Tag Image File Format (TIFF) library libtiff5-dev - Tag Image File Format library (TIFF), development files libtiffxx5 - Tag Image File Format (TIFF) library -- C++ interface Closes: 866109 868513 872607 873879 873880 885985 Changes: tiff (4.0.3-12.3+deb8u5) jessie-security; urgency=high . [ Laszlo Boszormenyi (GCS) ] * Fix CVE-2017-11335: heap based buffer write overflow in tiff2pdf (closes: #868513). * Fix CVE-2017-12944: OOM prevention in TIFFReadDirEntryArray() (closes: #872607). * Fix CVE-2017-13726: reachable assertion abort in TIFFWriteDirectorySec() (closes: #873880). * Fix CVE-2017-13727: reachable assertion abort in TIFFWriteDirectoryTagSubifd() (closes: #873879). * Fix CVE-2017-18013: NULL pointer dereference in TIFFPrintDirectory() (closes: #885985). * Fix CVE-2017-9935: heap-based buffer overflow in the t2p_write_pdf() function (closes: #866109). . [ Moritz Muehlenhoff ] * CVE-2016-10371 Checksums-Sha1: 71de7f8de61d2859ef14ccfa0d07c31afcc20627 209162 libtiff5_4.0.3-12.3+deb8u5_powerpc.deb 43b86b6303de97fb90b66762fd41ad6143fb1ad6 81278 libtiffxx5_4.0.3-12.3+deb8u5_powerpc.deb 4cbf5248dc7e90767c155b04a3551a535688e65e 325512 libtiff5-dev_4.0.3-12.3+deb8u5_powerpc.deb cb2c09ec2904d76d7b653df12f660c128c0d19a0 260634 libtiff-tools_4.0.3-12.3+deb8u5_powerpc.deb e9f9a6e3dbc604a1f3e619a4acec2492876fa10a 85648 libtiff-opengl_4.0.3-12.3+deb8u5_powerpc.deb Checksums-Sha256: b64f242cb108c1d22c1cec433b8ae6f950c1116dad271a2fa501782f96647516 209162 libtiff5_4.0.3-12.3+deb8u5_powerpc.deb 66c8809d3952d79a259dc3c766e7b52f2a35febb336d9f5a6012fc3643357353 81278 libtiffxx5_4.0.3-12.3+deb8u5_powerpc.deb 6b36021ffcae780e5b6dc0f1a637bd9342470ce850de96c234435972b3e007a1 325512 libtiff5-dev_4.0.3-12.3+deb8u5_powerpc.deb 8267b251006cdf20995e1998a5a166d3a33ee41c9105b5f54ac51ed160c8ac4e 260634 libtiff-tools_4.0.3-12.3+deb8u5_powerpc.deb 24e72b4995cf3628c0042551afa8dc8fb3cdef31069b322f6b34c103fdfe1090 85648 libtiff-opengl_4.0.3-12.3+deb8u5_powerpc.deb Files: a9be0f20b4634c3583e0b7ceb4fa29d2 209162 libs optional libtiff5_4.0.3-12.3+deb8u5_powerpc.deb 11d436e30e17649bf866bbd11d39c2be 81278 libs optional libtiffxx5_4.0.3-12.3+deb8u5_powerpc.deb f68ef96da8be737dafcd2e75958f405a 325512 libdevel optional libtiff5-dev_4.0.3-12.3+deb8u5_powerpc.deb e6edae8bbee215e6fa1bba2bd5432c5d 260634 graphics optional libtiff-tools_4.0.3-12.3+deb8u5_powerpc.deb 6ddbec5e8bb1c6d59fc3039e42e5d778 85648 graphics optional libtiff-opengl_4.0.3-12.3+deb8u5_powerpc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJaa713AAoJEOztKMTe11ON5pYQALEbKlcKAiHWgyZtpBR7T/9O pjkPfxjbpADyIzukYAjIOpSjIjm8uGTQzPJ6VZKMvLWjCwtwqfgy6qcuvJpjR0YX D3zpLZomBAXiL3r6e8HbsgAL4zlf18wNWyenXzpxLyPr29M5EWL1SgK8AEt8TJtD aAUdHdde7JC8dgFBP9vEo8gBnqoXRkyV1MBD5WaFXIjBApJh+U4jnopemPVfi6ej pMDdkeoY3oBHmZto6X3kmgoJA17U9S4OJHQLclwyLyqbS2F6skf5d09k93SoayL2 YoCOONcwarB78cdUWKb/a6ZzvKP3S54ZA9pvUrR4R8ecFe3VJUmeoKfCR1TslNGd W6HcjZt5EylW+scDjiOBEf01Kxwq2+5/Iwmam6WGdY0rGIrHJeRx2Lx4gl7iYnKk dceEClxX8LtcKXsCT9Hhu+nJfyqPp55T+7mLYmW3WmRQrX9Q5d6hc/HclrzVv7n8 8HOPuYVsZ3/kx/cVQekORkpdAUGu59Ih55hEjdqqir1AnI7pDJJDBmVS+gwPtRNl 98C7XHjSb6C50m/g3CD3xsW+EXefDapBKXQuQpZWkTVWDgZ3w6MM1W7+jRG1WQ4m /7siMEb361vr2d1Ao3SiNnKZxi2CcqUkmr1HeTSl+EEzYEByh2sk/iKEMq8r1u+2 uh4XOzHCf2NovlxtFBdU =KIun -----END PGP SIGNATURE-----