-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Sat, 21 Jul 2012 21:33:53 -0400 Source: tiff3 Binary: libtiff4 libtiffxx0c2 libtiff4-dev Architecture: source amd64 Version: 3.9.6-7 Distribution: unstable Urgency: high Maintainer: Jay Berkenbilt <qjb@debian.org> Changed-By: Jay Berkenbilt <qjb@debian.org> Description: libtiff4 - Tag Image File Format (TIFF) library (old version) libtiff4-dev - Tag Image File Format (TIFF) library (old version), development f libtiffxx0c2 - Tag Image File Format (TIFF) library (old version) -- C++ interfa Closes: 682195 Changes: tiff3 (3.9.6-7) unstable; urgency=high . * SECURITY UPDATE: possible arbitrary code execution via heap overflow in tiff2pdf. (Closes: #682195) - debian/patches/CVE-2012-3401.patch: properly set t2p->t2p_error in tools/tiff2pdf.c. - CVE-2012-3401 Changes prepared by Marc Deslauriers for Ubuntu. Thanks! Checksums-Sha1: a2e12cab6a19701c122fa786959cc34b6c57297a 1929 tiff3_3.9.6-7.dsc 713e83581ad2193552cd77233eebe80276eb9573 15629 tiff3_3.9.6-7.debian.tar.gz 4f4046db6ee55b2cde2700822084ca369661c9b9 201782 libtiff4_3.9.6-7_amd64.deb 3f3f59ec99bbb951a2b808aa94d945c3c07f3405 63148 libtiffxx0c2_3.9.6-7_amd64.deb 11db9a5c09d38d1bbdb5225169e047af618c9bba 336674 libtiff4-dev_3.9.6-7_amd64.deb Checksums-Sha256: abd98480d2a4ac05b16896de17a6d2a3c0a310108355fad9ca6b516b9d9fd6da 1929 tiff3_3.9.6-7.dsc b4370575a2fdf13f51a7799a90e504db940ed27af41554b8afff959eb6ac9e4a 15629 tiff3_3.9.6-7.debian.tar.gz 5d8efea65e9d49eaec128409b5197f542cc75360cb89b9f547584ac0f2cafd77 201782 libtiff4_3.9.6-7_amd64.deb 2104ba39e7bf082187ec3166668ab49df0554c5353ca2b2ca82a5dfa7bea2bd9 63148 libtiffxx0c2_3.9.6-7_amd64.deb c7268d09b9184b670d547f166ac0cab5cc343ecff5de165f18738514fb048fa8 336674 libtiff4-dev_3.9.6-7_amd64.deb Files: 9a60036231aa77e37caf01b41432f724 1929 oldlibs optional tiff3_3.9.6-7.dsc 4122fa4f0b38e4cfb64787968039c775 15629 oldlibs optional tiff3_3.9.6-7.debian.tar.gz 4b730acf0d399c3951c080b6ccbcb27e 201782 oldlibs optional libtiff4_3.9.6-7_amd64.deb 4af726244021f7eca61f169c90bfd057 63148 oldlibs optional libtiffxx0c2_3.9.6-7_amd64.deb 619b0c9f52aca254496125e543215c82 336674 libdevel optional libtiff4-dev_3.9.6-7_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) iQIcBAEBAgAGBQJQC1nrAAoJEIp10QmYASx+DFYP/A4uDHCsOwUc2J0KpBqMgat2 /g+mNmh489dpzDO4fpwUMd01kr7DnY3f7yh5fpnbH/T3VHjPRlxCCLYEDrmnTooI c2hLTcO0yL8cMDJphGZEB5SY/qITalgEROFA4yY1BLZalmLJT8C2oLmkhUdDTq2T NIBGOxOYco3w8Bf1dFZ70vEbSPL92FTnX//PYnF+yDmEb3dm0CdVYOpQuyXYfTbW 5PTZNDxI+6TuKhzXVhVC2RzqAcjkWLkhn7cMyNWWKwLbuIRTebejt+0OlBIThGZ+ /ypd7r43QaUOQuh4raJuJBI4GHNw3I8A+0mEZJA+hnyjmss2bKqOumgpygwSlpBR YRbVmoYq//zQGY47qETOaJ+xVoavlVWa/qa4O76Y8i9RAD3710ohU+J6PgtWJpKA ba6k9dj3jp6p8W6EUDTRZqD+nfJNC/h8UYkKlMyjLHumBQu7HMDNRSddNl57gum2 T3/+DLBy4J8nE2wjOR5sCCAe9Pn6bKpVfrbRLjVMKGkdkSAKPdik+vxhxtzIALtp AGgUNLGkRrWUbslTbRj6g4eh4/iQqnNC60IZmJshTubUwo24yYtA9QpCzoB26pEa a50qpMJGqJtpIeJeRCDypj4XCQpjKFUTl/pT5I6DnnktNdWAN0nZE9wOZUoFfMlT Daz8rC42ISufwO1kKqwv =7aoe -----END PGP SIGNATURE-----