tiff: CVE-2016-9532: tiffcrop: heap buffer overflow via writeBufferToSeparateStrips

Related Vulnerabilities: CVE-2016-9532  

Debian Bug report logs - #844057
tiff: CVE-2016-9532: tiffcrop: heap buffer overflow via writeBufferToSeparateStrips

version graph

Reported by: Salvatore Bonaccorso <carnil@debian.org>

Date: Sat, 12 Nov 2016 05:39:02 UTC

Severity: normal

Tags: fixed-upstream, patch, security, upstream

Found in version tiff/4.0.6-3

Fixed in version tiff/4.0.7-1

Done: Salvatore Bonaccorso <carnil@debian.org>

Bug is archived. No further changes may be made.

Forwarded to http://bugzilla.maptools.org/show_bug.cgi?id=2592

Toggle useless messages

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, carnil@debian.org, team@security.debian.org, secure-testing-team@lists.alioth.debian.org, Laszlo Boszormenyi (GCS) <gcs@debian.org>:
Bug#844057; Package src:tiff. (Sat, 12 Nov 2016 05:39:04 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
New Bug report received and forwarded. Copy sent to carnil@debian.org, team@security.debian.org, secure-testing-team@lists.alioth.debian.org, Laszlo Boszormenyi (GCS) <gcs@debian.org>. (Sat, 12 Nov 2016 05:39:04 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: tiff: Heap buffer overflow via writeBufferToSeparateStrips tiffcrop.c:1170
Date: Sat, 12 Nov 2016 06:37:00 +0100
Source: tiff
Version: 4.0.6-3
Severity: normal
Tags: security upstream patch
Forwarded: http://bugzilla.maptools.org/show_bug.cgi?id=2592

Hi

See http://bugzilla.maptools.org/show_bug.cgi?id=2592 and
http://www.openwall.com/lists/oss-security/2016/11/11/14 . It is
reproducible with an ASAN build and the reproducer attached to the
upstream bugreport.

No CVE has beeen assigned yet; though maybe will not since seems to
affect only the tiffcrop tool.

Please adjust the affected versions as needed.

Regards,
Salvatore



Added tag(s) fixed-upstream. Request was from bts-link-upstream@lists.alioth.debian.org to control@bugs.debian.org. (Thu, 17 Nov 2016 17:33:12 GMT) (full text, mbox, link).


Marked as fixed in versions tiff/4.0.7-1. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Sun, 20 Nov 2016 21:09:02 GMT) (full text, mbox, link).


Marked Bug as done Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Sun, 20 Nov 2016 21:09:03 GMT) (full text, mbox, link).


Notification sent to Salvatore Bonaccorso <carnil@debian.org>:
Bug acknowledged by developer. (Sun, 20 Nov 2016 21:09:04 GMT) (full text, mbox, link).


Message sent on to Salvatore Bonaccorso <carnil@debian.org>:
Bug#844057. (Sun, 20 Nov 2016 21:09:05 GMT) (full text, mbox, link).


Message #16 received at 844057-submitter@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: control@bugs.debian.org
Cc: 844057-submitter@bugs.debian.org
Subject: closing 844057
Date: Sun, 20 Nov 2016 22:07:45 +0100
close 844057 4.0.7-1
thanks




Changed Bug title to 'tiff: CVE-2016-9532: tiffcrop: heap buffer overflow via writeBufferToSeparateStrips' from 'tiff: Heap buffer overflow via writeBufferToSeparateStrips tiffcrop.c:1170'. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Tue, 22 Nov 2016 05:57:05 GMT) (full text, mbox, link).


Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Thu, 29 Dec 2016 08:52:41 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Wed Jun 19 18:17:22 2019; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.