ALAS-2023-1788

Related Vulnerabilities: CVE-2023-3576  

Memory leak in memory leak in tiffcrop.c. (CVE-2023-3576)

ALAS-2023-1788


Amazon Linux AMI Security Advisory: ALAS-2023-1788
Advisory Release Date: 2023-07-19 22:14 Pacific
Advisory Updated Date: 2023-07-25 23:24 Pacific
Severity: Medium

Issue Overview:

Memory leak in memory leak in tiffcrop.c. (CVE-2023-3576)


Affected Packages:

libtiff


Issue Correction:
Run yum update libtiff to update your system.

New Packages:
i686:
    libtiff-debuginfo-4.0.3-35.43.amzn1.i686
    libtiff-static-4.0.3-35.43.amzn1.i686
    libtiff-devel-4.0.3-35.43.amzn1.i686
    libtiff-4.0.3-35.43.amzn1.i686

src:
    libtiff-4.0.3-35.43.amzn1.src

x86_64:
    libtiff-debuginfo-4.0.3-35.43.amzn1.x86_64
    libtiff-devel-4.0.3-35.43.amzn1.x86_64
    libtiff-4.0.3-35.43.amzn1.x86_64
    libtiff-static-4.0.3-35.43.amzn1.x86_64