Bug#600188: tiff: CVE-2010-3087

2010-10-17 Thread Jay Berkenbilt
Disregard my previous response. Red Hat and SUSE have both taken the patch from the bugzilla issue that upstream rejected, so I will do so as well. Uploading momentarily. Jay Berkenbilt wrote: > Moritz Muehlenhoff wrote: > >> Package: tiff >> Severity: grave >> Tags: security >> Justificatio

Bug#600188: tiff: CVE-2010-3087

2010-10-16 Thread Jay Berkenbilt
Moritz Muehlenhoff wrote: > Package: tiff > Severity: grave > Tags: security > Justification: user security hole > > Please see: > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3087 > > This patch should fix it: > http://bugzilla.maptools.org/show_bug.cgi?id=2140 Upstream rejected the p

Bug#600188: tiff: CVE-2010-3087

2010-10-14 Thread Moritz Muehlenhoff
Package: tiff Severity: grave Tags: security Justification: user security hole Please see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3087 This patch should fix it: http://bugzilla.maptools.org/show_bug.cgi?id=2140 (Lenny is not affected) Cheers, Moritz -- System Informatio