Your message dated Sat, 17 Nov 2012 18:47:52 +0000
with message-id <e1tznqm-0001pu...@franck.debian.org>
and subject line Bug#692345: fixed in tiff 4.0.2-5
has caused the Debian Bug report #692345,
regarding tiff: CVE-2012-4564
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)
--
692345: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=692345
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: tiff
Severity: grave
Tags: security
Justification: user security hole
Please see https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4564
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: tiff
Source-Version: 4.0.2-5
We believe that the bug you reported is fixed in the latest version of
tiff, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to 692...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Jay Berkenbilt <q...@debian.org> (supplier of updated tiff package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@debian.org)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Sat, 17 Nov 2012 12:40:25 -0500
Source: tiff
Binary: libtiff5 libtiffxx5 libtiff5-dev libtiff5-alt-dev libtiff-tools
libtiff-opengl libtiff-doc
Architecture: source all amd64
Version: 4.0.2-5
Distribution: unstable
Urgency: high
Maintainer: Jay Berkenbilt <q...@debian.org>
Changed-By: Jay Berkenbilt <q...@debian.org>
Description:
libtiff-doc - TIFF manipulation and conversion documentation
libtiff-opengl - TIFF manipulation and conversion tools
libtiff-tools - TIFF manipulation and conversion tools
libtiff5 - Tag Image File Format (TIFF) library
libtiff5-alt-dev - Tag Image File Format library (TIFF), alternative
development fil
libtiff5-dev - Tag Image File Format library (TIFF), development files
libtiffxx5 - Tag Image File Format (TIFF) library -- C++ interface
Closes: 692345
Changes:
tiff (4.0.2-5) unstable; urgency=high
.
* Add fix for CVE-2012-4564, a heap-buffer overflow. Thanks Adrian La
Duca for doing all the work to prepare this upload. (Closes: #692345)
Checksums-Sha1:
d1cfd8bcd80521ec3a7f7d41acb12addc036c27c 2124 tiff_4.0.2-5.dsc
8c30d18a074ec4fa003df36c01e5dc3fca0c16ab 15824 tiff_4.0.2-5.debian.tar.gz
d722a0a5d7170f1f3e1b2f58b3f01e949f80e7d2 395380 libtiff-doc_4.0.2-5_all.deb
22263d0c8483fe6d5e1293a559618b4a5fb55aeb 233932 libtiff5_4.0.2-5_amd64.deb
5406aedcf5b5db039a8d596e7d604f38fed525db 73104 libtiffxx5_4.0.2-5_amd64.deb
1b3146a53570c9770585acb481d7343dd79c9cb8 375800 libtiff5-dev_4.0.2-5_amd64.deb
f6f27d7c2b349d3274097d09ba3ec2accb98c84a 295766
libtiff5-alt-dev_4.0.2-5_amd64.deb
b0133f17ba38137e83fa382ea18ffb829cadbc3d 336864 libtiff-tools_4.0.2-5_amd64.deb
c7f2d4056dc4fe1bc993dbde881eff33092fab41 78764 libtiff-opengl_4.0.2-5_amd64.deb
Checksums-Sha256:
0148e54e6f09fb43192e39c16941d2e589f5582c558a842464042369e2321de0 2124
tiff_4.0.2-5.dsc
97ee6a100aa98a86ca9e7028bc8a8dd773bf917fd4627aae8682dc49072220e3 15824
tiff_4.0.2-5.debian.tar.gz
275b8ceed38c08a82f21e27349d21bb74f18be16a776a38fd6541ef4883491b6 395380
libtiff-doc_4.0.2-5_all.deb
df9b3c2274c76a6de52a6bc62ac6f79687db2b856a4fe52aa097562916fe5f68 233932
libtiff5_4.0.2-5_amd64.deb
af859b2bbbb1965e56cd02803f31ffcebf79686c523a309e00a1576fd524d436 73104
libtiffxx5_4.0.2-5_amd64.deb
985e1d7ef6593a822e031b02a21ebb2f6eefe8eaa6d2e46d74bc025684a8a564 375800
libtiff5-dev_4.0.2-5_amd64.deb
03e8277baa0fd53cd14dd7d638d1d0cacf1b70a45e4b696b06af41cfc1022023 295766
libtiff5-alt-dev_4.0.2-5_amd64.deb
a6936027365fb3900c71d0b96bdcdab479afb4be931332a92c1509afb1f83bf5 336864
libtiff-tools_4.0.2-5_amd64.deb
bf015913ccfec078c3e860c39fa7bf8e3490c52ce922461eeb94ccad5cda1761 78764
libtiff-opengl_4.0.2-5_amd64.deb
Files:
3176eb248f2794c8a3253bd17add147e 2124 libs optional tiff_4.0.2-5.dsc
4598d82bb2e8522dca9c1ebc13edcb1a 15824 libs optional tiff_4.0.2-5.debian.tar.gz
3352277ad38d56c789791d281b592207 395380 doc optional
libtiff-doc_4.0.2-5_all.deb
06bf0b65eb0d7404b0e3b0dfcc0d4281 233932 libs optional
libtiff5_4.0.2-5_amd64.deb
473aa8e6193df44535cf3020bab5d2ac 73104 libs optional
libtiffxx5_4.0.2-5_amd64.deb
6396d6345b92044f44277aacd5e8143a 375800 libdevel optional
libtiff5-dev_4.0.2-5_amd64.deb
d024dde260cac3bc3242672a5f88e512 295766 libdevel optional
libtiff5-alt-dev_4.0.2-5_amd64.deb
709a1582af661f2384b80577661f0d77 336864 graphics optional
libtiff-tools_4.0.2-5_amd64.deb
bdfe5109c77f5aee3045036e4cf864de 78764 graphics optional
libtiff-opengl_4.0.2-5_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)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=O9/r
-----END PGP SIGNATURE-----
--- End Message ---