ELSA-2008-0848

ELSA-2008-0848 - libtiff security and bug fix update

Type:SECURITY
Severity:IMPORTANT
Release Date:2008-08-28

Description



[3.6.1-12.el4.2]
- Get rid of html pages for un-shipped programs, too
Resolves: #459404

[3.6.1-12.el4.1]
- Fix LZW decoding vulnerabilities (CVE-2008-2327)
Resolves: #458814
- Back-port fix for CVE-2006-2193
Resolves: #458814
- Remove sgi2tiff.1 and tiffsv.1, since they are for programs we don't ship
Resolves: #459404
- Remove fuzz in existing patches tiff-3.6.1-color.patch, tiffsplit-overflow.patch


Related CVEs


CVE-2008-2327
CVE-2006-2193

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) libtiff-3.6.1-12.el4_7.2.src.rpmf17bff5d8cc760b932561055c052e3dcELSA-2011-0392
libtiff-3.6.1-12.el4_7.2.i386.rpm5fdb09d3b981386f8dc1f29584f8d491ELSA-2011-0392
libtiff-devel-3.6.1-12.el4_7.2.i386.rpm5638f7a9c5a964a43fa34293f85e6e61ELSA-2011-0392
Oracle Linux 4 (ia64) libtiff-3.6.1-12.el4_7.2.src.rpmf17bff5d8cc760b932561055c052e3dcELSA-2011-0392
libtiff-3.6.1-12.el4_7.2.i386.rpm5fdb09d3b981386f8dc1f29584f8d491ELSA-2011-0392
libtiff-3.6.1-12.el4_7.2.ia64.rpm9b4c3a210af294206e5af48fbb4cccb5ELSA-2011-0392
libtiff-devel-3.6.1-12.el4_7.2.ia64.rpmedfff9a65d40886113771f21c3e8c25fELSA-2011-0392
Oracle Linux 4 (x86_64) libtiff-3.6.1-12.el4_7.2.src.rpmf17bff5d8cc760b932561055c052e3dcELSA-2011-0392
libtiff-3.6.1-12.el4_7.2.i386.rpm5fdb09d3b981386f8dc1f29584f8d491ELSA-2011-0392
libtiff-3.6.1-12.el4_7.2.x86_64.rpm42bb53fb5889475bdfcf5d36dfcb0c60ELSA-2011-0392
libtiff-devel-3.6.1-12.el4_7.2.x86_64.rpm8e696ab1e1ea3c910f22a4df49bc282eELSA-2011-0392



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete