ALAS-2015-553

Related Vulnerabilities: CVE-2014-9655   CVE-2015-1547  

Use of uninitialized memory was reported in in libtiff.

ALAS-2015-553


Amazon Linux AMI Security Advisory: ALAS-2015-553
Advisory Release Date: 2015-06-22 15:07 Pacific
Advisory Updated Date: 2015-06-24 10:14 Pacific
Severity: Medium

Issue Overview:

Use of uninitialized memory was reported in in libtiff.


Affected Packages:

libtiff


Issue Correction:
Run yum update libtiff to update your system.

New Packages:
i686:
    libtiff-4.0.3-20.20.amzn1.i686
    libtiff-debuginfo-4.0.3-20.20.amzn1.i686
    libtiff-devel-4.0.3-20.20.amzn1.i686
    libtiff-static-4.0.3-20.20.amzn1.i686

src:
    libtiff-4.0.3-20.20.amzn1.src

x86_64:
    libtiff-debuginfo-4.0.3-20.20.amzn1.x86_64
    libtiff-devel-4.0.3-20.20.amzn1.x86_64
    libtiff-static-4.0.3-20.20.amzn1.x86_64
    libtiff-4.0.3-20.20.amzn1.x86_64