DSA-4670-1 tiff -- security update

Related Vulnerabilities: CVE-2018-12900   CVE-2018-17000   CVE-2018-17100   CVE-2018-19210   CVE-2019-7663   CVE-2019-14973   CVE-2019-17546  

Several vulnerabilities have been found in the TIFF library, which may result in denial of service or the execution of arbitrary code if malformed image files are processed. For the oldstable distribution (stretch), these problems have been fixed in version 4.0.8-2+deb9u5. We recommend that you upgrade your tiff packages. For the detailed security status of tiff please refer to its security tracker page at: https://security-tracker.debian.org/tracker/tiff

Debian Security Advisory

DSA-4670-1 tiff -- security update

Date Reported:
29 Apr 2020
Affected Packages:
tiff
Vulnerable:
Yes
Security database references:
In the Debian bugtracking system: Bug 902718, Bug 908778, Bug 909038, Bug 913675, Bug 934780.
In Mitre's CVE dictionary: CVE-2018-12900, CVE-2018-17000, CVE-2018-17100, CVE-2018-19210, CVE-2019-7663, CVE-2019-14973, CVE-2019-17546.
More information:

Several vulnerabilities have been found in the TIFF library, which may result in denial of service or the execution of arbitrary code if malformed image files are processed.

For the oldstable distribution (stretch), these problems have been fixed in version 4.0.8-2+deb9u5.

We recommend that you upgrade your tiff packages.

For the detailed security status of tiff please refer to its security tracker page at: https://security-tracker.debian.org/tracker/tiff