Bug#682115: tiff: CVE-2012-3401 heap overflow in tiff2pdf

2012-07-21 Thread Marc Deslauriers
On Sat, 2012-07-21 at 20:57 -0400, Jay Berkenbilt wrote: > Marc Deslauriers wrote: > > > *** /tmp/tmpgGHwFf/bug_body > > In Ubuntu, the attached patch was applied to achieve the following: > > > > * SECURITY UPDATE: possible arbitrary code execution via heap overflow > > in tiff2pdf. > >

Bug#682115: tiff: CVE-2012-3401 heap overflow in tiff2pdf

2012-07-21 Thread Jay Berkenbilt
Marc Deslauriers wrote: > *** /tmp/tmpgGHwFf/bug_body > In Ubuntu, the attached patch was applied to achieve the following: > > * SECURITY UPDATE: possible arbitrary code execution via heap overflow > in tiff2pdf. > - debian/patches/CVE-2012-3401.patch: properly set t2p->t2p_error in >