Back to tiff PTS page

Accepted tiff 4.4.0-6 (source) into unstable



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 24 Nov 2022 17:54:18 +0100
Source: tiff
Architecture: source
Version: 4.4.0-6
Distribution: unstable
Urgency: high
Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org>
Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org>
Closes: 1024670 1024737
Changes:
 tiff (4.4.0-6) unstable; urgency=high
 .
   * Backport security fix for CVE-2022-2519, double free or corruption in
     rotateImage() (closes: #1024670).
   * Backport security fix for CVE-2022-2520, sysmalloc assertion fail in
     rotateImage().
   * Backport security fix for CVE-2022-2521, invalid pointer free operation
     in TIFFClose().
   * Backport security fix for CVE-2022-2953, out-of-bounds read in
     extractImageSection().
   * Backport security fix for CVE-2022-3970, fix (unsigned) integer overflow
     on strips/tiles > 2 GB in TIFFReadRGBATileExt() (closes: #1024737).
Checksums-Sha1:
 54526a597709e13559b9e3fb7c7599426f43e44e 2238 tiff_4.4.0-6.dsc
 ae9dab47d4495cf502b42addbd085885e4319283 33680 tiff_4.4.0-6.debian.tar.xz
Checksums-Sha256:
 39f656d60cb0a75ae02fad9c16eb0c275c8a4bcb7efb02898c8c9bcfcf83b5f5 2238 tiff_4.4.0-6.dsc
 37c1e4a7151c3790404e94a137825856f4d1f8fe8a8d3253a455ddff648f329b 33680 tiff_4.4.0-6.debian.tar.xz
Files:
 07f8a7896c660806d4161644e07734c3 2238 libs optional tiff_4.4.0-6.dsc
 0fadacf944b89734f191bdd67508c42b 33680 libs optional tiff_4.4.0-6.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
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=RXJk
-----END PGP SIGNATURE-----