ALAS-2022-256

Related Vulnerabilities: CVE-2022-3970  

ALAS-2022-256


Amazon Linux 2022 Security Advisory: ALAS-2022-256
Advisory Release Date: 2022-12-06 16:45 Pacific
Advisory Updated Date: 2022-12-06 16:45 Pacific
Severity: Important
References: CVE-2022-3970 

Issue Overview:


Affected Packages:

libtiff


Issue Correction:
Run yum update libtiff to update your system.

New Packages:
aarch64:
    libtiff-debugsource-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-static-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-tools-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-tools-debuginfo-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-debuginfo-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-4.4.0-4.amzn2022.0.2.aarch64
    libtiff-devel-4.4.0-4.amzn2022.0.2.aarch64

i686:
    libtiff-debugsource-4.4.0-4.amzn2022.0.2.i686
    libtiff-static-4.4.0-4.amzn2022.0.2.i686
    libtiff-debuginfo-4.4.0-4.amzn2022.0.2.i686
    libtiff-devel-4.4.0-4.amzn2022.0.2.i686
    libtiff-tools-debuginfo-4.4.0-4.amzn2022.0.2.i686
    libtiff-tools-4.4.0-4.amzn2022.0.2.i686
    libtiff-4.4.0-4.amzn2022.0.2.i686

src:
    libtiff-4.4.0-4.amzn2022.0.2.src

x86_64:
    libtiff-debugsource-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-tools-debuginfo-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-static-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-debuginfo-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-tools-4.4.0-4.amzn2022.0.2.x86_64
    libtiff-devel-4.4.0-4.amzn2022.0.2.x86_64