package: src:tiff version: 3.9.4-5 severity: important This issue is currently unfixed in the tiff packages: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4243
No DSA needed since it only affects the gif2tiff command-line tool. Best wishes, Mike -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org