-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 26 Jan 2018 20:53:45 +0000 Source: tiff Binary: libtiff5 libtiffxx5 libtiff5-dev libtiff-tools libtiff-opengl libtiff-doc Architecture: ppc64el Version: 4.0.3-12.3+deb8u5 Distribution: jessie-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-01) Changed-By: Moritz Muehlenhoff Description: libtiff-doc - TIFF manipulation and conversion documentation libtiff-opengl - TIFF manipulation and conversion tools libtiff-tools - TIFF manipulation and conversion tools libtiff5 - Tag Image File Format (TIFF) library libtiff5-dev - Tag Image File Format library (TIFF), development files libtiffxx5 - Tag Image File Format (TIFF) library -- C++ interface Closes: 866109 868513 872607 873879 873880 885985 Changes: tiff (4.0.3-12.3+deb8u5) jessie-security; urgency=high . [ Laszlo Boszormenyi (GCS) ] * Fix CVE-2017-11335: heap based buffer write overflow in tiff2pdf (closes: #868513). * Fix CVE-2017-12944: OOM prevention in TIFFReadDirEntryArray() (closes: #872607). * Fix CVE-2017-13726: reachable assertion abort in TIFFWriteDirectorySec() (closes: #873880). * Fix CVE-2017-13727: reachable assertion abort in TIFFWriteDirectoryTagSubifd() (closes: #873879). * Fix CVE-2017-18013: NULL pointer dereference in TIFFPrintDirectory() (closes: #885985). * Fix CVE-2017-9935: heap-based buffer overflow in the t2p_write_pdf() function (closes: #866109). . [ Moritz Muehlenhoff ] * CVE-2016-10371 Checksums-Sha1: 591c8c0e68cda90ca9a824069857b4a6ca11a601 209730 libtiff5_4.0.3-12.3+deb8u5_ppc64el.deb df320d908b4d012357fca5776b49813f60d432f2 81164 libtiffxx5_4.0.3-12.3+deb8u5_ppc64el.deb eb553aa32ef69485316a80b8458e0a9450d749e2 337642 libtiff5-dev_4.0.3-12.3+deb8u5_ppc64el.deb 26c0ff746497685f1a2232f657570bbf774fd927 264052 libtiff-tools_4.0.3-12.3+deb8u5_ppc64el.deb 35bc080ac72001fba28597521e26c18769caf974 85932 libtiff-opengl_4.0.3-12.3+deb8u5_ppc64el.deb Checksums-Sha256: 9de08b3dfe03e2ef4a00f2acc602f1029b5d1e58faf1fe234e83020521e96f0d 209730 libtiff5_4.0.3-12.3+deb8u5_ppc64el.deb 195042b5274c73879a28cf3e9ee9b860a58ac35fdedabe4e3c19a9b697a12451 81164 libtiffxx5_4.0.3-12.3+deb8u5_ppc64el.deb 2f0701e9211b72d0890fa49b42d6234f4e2df1b4b2984fc1541d70401bcfb8f3 337642 libtiff5-dev_4.0.3-12.3+deb8u5_ppc64el.deb 457b30fb0be39d8ac58d9aa2db592d17836460df5a0f8d30fe64cb9e0e23aa2e 264052 libtiff-tools_4.0.3-12.3+deb8u5_ppc64el.deb 709b43ac2990c2159f7087a4ab60558252b859ae479b16cc6f9bfa958a82976e 85932 libtiff-opengl_4.0.3-12.3+deb8u5_ppc64el.deb Files: 1143f6a6161f82965b3ea3eb582f4c2d 209730 libs optional libtiff5_4.0.3-12.3+deb8u5_ppc64el.deb 89ed73213ef87bcec3082d473a871f66 81164 libs optional libtiffxx5_4.0.3-12.3+deb8u5_ppc64el.deb 75f7a77620e16b78f225b829309ee608 337642 libdevel optional libtiff5-dev_4.0.3-12.3+deb8u5_ppc64el.deb 444125f26e02fab8e51163497f9723eb 264052 graphics optional libtiff-tools_4.0.3-12.3+deb8u5_ppc64el.deb b45895f4b6d9b9dadbedaaf6baa89fb2 85932 graphics optional libtiff-opengl_4.0.3-12.3+deb8u5_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEbiFq0D2o6nUzEZYnmczybrX3UtIFAlprvI8ACgkQmczybrX3 UtJj0BAAsusogRL0bbw8Ht7MNKOJLWvwy2bFuaehdtAYZb+fNvGEwpYXeSR2N7vd CdO5faiPxkOY/QwOOliKumdzv5AXDimZNAsA44bL+wsOZbIiHrl5DYHXWJA+3oFe YvB1hYGiTFg9ZgYNzLy0XsTBBhfNibjqnHZtkiatSFlQ3/WQR9CChCrxYfApQnuL 7aYJVwdz60Nv9Wpepdx+ZnEuqMqwWuOA9FpyJA/mXNODDTRKBSLaa8CsQeT6krwK F7Vj3aj8Gged77uxoPcUg3WYEEViSc6KyHZ2orn+ByOku8zOTfgH1FJcruQQwoGa 1f/f/UOz7Aa8fquo9OaqAArVLZAYW+JFRwzyFQKA6mnq9UDnJLVv2Q6aO+NeB9xG 2YNpbAougmCVJN6uYJaNZcc6MThfl+MwLY5mZ0lNmHvivRmYMgYhT/xJg/8lAC// aA6UCcOyyYIlGJth+ZLiKtk7aBkGj544zriWkAvJQ2WWA99Zkzuftz5CmZ9eF8yC mGQRQ+vTCL13g0PARd3LoVQUTic27VzLwIPiWfo1uehzf38FyJUegey2tqtGxf2d FkXOk9d4ketgtlGIe/T7o4+tEiKjrc5SkXRUDtVxJiu1Xhhch/V/Dlhv9V+tI7Xs cbxYLS8ss/N7nYzumXDdAbtK0X2qMScYWXRiht73pviCYLlXCCI= =nKEc -----END PGP SIGNATURE-----