LWN.net Logo

tiff: arbitrary code execution

Package(s):tiff CVE #(s):CVE-2008-2327
Created:August 26, 2008 Updated:December 4, 2009
Description: From the Debian alert: Drew Yao discovered that libTIFF, a library for handling the Tagged Image File Format, is vulnerable to a programming error allowing malformed tiff files to lead to a crash or execution of arbitrary code.
Alerts:
Mandriva MDVSA-2009:169-1 2009-12-03
Mandriva MDVSA-2009:169 2009-07-28
Mandriva MDVSA-2009:150 2009-07-13
CentOS CESA-2008:0847 2008-10-03
SuSE SUSE-SR:2008:018 2008-09-19
Fedora FEDORA-2008-7370 2008-09-05
Fedora FEDORA-2008-7388 2008-09-05
Gentoo 200809-07 2008-09-08
rPath rPSA-2008-0268-1 2008-09-04
Mandriva MDVSA-2008:184 2007-09-03
Ubuntu USN-639-1 2008-09-02
CentOS CESA-2008:0848 2008-08-30
CentOS CESA-2008:0863 2008-08-29
Red Hat RHSA-2008:0863-01 2008-08-28
Red Hat RHSA-2008:0848-01 2008-08-28
Red Hat RHSA-2008:0847-01 2008-08-28
Debian DSA-1632-1 2008-08-26

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds