-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 22 Nov 2016 12:03:09 +0100 Source: tiff Binary: libtiff5 libtiffxx5 libtiff5-dev libtiff5-alt-dev libtiff-tools libtiff-opengl libtiff-doc Architecture: source all amd64 Version: 4.0.2-6+deb7u8 Distribution: wheezy-security Urgency: high Maintainer: Ondřej Surý <ondrej@debian.org> Changed-By: Raphaël Hertzog <hertzog@debian.org> Description: libtiff-doc - TIFF manipulation and conversion documentation libtiff-opengl - TIFF manipulation and conversion tools libtiff-tools - TIFF manipulation and conversion tools libtiff5 - Tag Image File Format (TIFF) library libtiff5-alt-dev - Tag Image File Format library (TIFF), alternative development fil libtiff5-dev - Tag Image File Format library (TIFF), development files libtiffxx5 - Tag Image File Format (TIFF) library -- C++ interface Closes: 844013 844057 844226 Changes: tiff (4.0.2-6+deb7u8) wheezy-security; urgency=high . * Non-maintainer upload by the Debian Long Term Support Team. * Add 3 patches to fix: - CVE-2016-9273: heap-buffer-overflow in cpStrips Closes: #844013 - CVE-2016-9297: read outside buffer in _TIFFPrintField Closes: #844226 - CVE-2016-9532: heap buffer overflow via writeBufferToSeparateStrips Closes: #844057 Checksums-Sha1: 53302b0a299c155369c877be93c74920ae90bad6 1896 tiff_4.0.2-6+deb7u8.dsc 047d9103173c1a905e0c3ff1647f46f95bc3a2e4 53852 tiff_4.0.2-6+deb7u8.debian.tar.gz 38244a70b09b93db70223063b87f2cd8c3d014a2 413916 libtiff-doc_4.0.2-6+deb7u8_all.deb aadebcc94ad7d21ec46cab03d0eeafc129bb07c5 236416 libtiff5_4.0.2-6+deb7u8_amd64.deb cf485b96711c53ede37396dde6708587264bb8f2 75232 libtiffxx5_4.0.2-6+deb7u8_amd64.deb 2ec5f25effacb082793181fc843f4f0842e715e9 378922 libtiff5-dev_4.0.2-6+deb7u8_amd64.deb dcd9d48d77583922851322927982712964ec1f5f 299070 libtiff5-alt-dev_4.0.2-6+deb7u8_amd64.deb ebf408ec9007b413d37a86cbde34d0c94ed3a76c 305446 libtiff-tools_4.0.2-6+deb7u8_amd64.deb badebd5051857f426395f7bf2b30399c1b143c2f 80742 libtiff-opengl_4.0.2-6+deb7u8_amd64.deb Checksums-Sha256: 1d349df98bc8df1b8146566a7d28333aaab22b35007f50298a10d18194bdf596 1896 tiff_4.0.2-6+deb7u8.dsc 483a6c5a246b62165244ca9e28828035708167ef8a9776e400bb4f321b29b8d5 53852 tiff_4.0.2-6+deb7u8.debian.tar.gz 5095926a6508195a506f43a2a80a9fc246ba9cd5e44ea71ba5ca0ebb67d542e4 413916 libtiff-doc_4.0.2-6+deb7u8_all.deb e48948e8f3123061abdff2742457b163a38c968c14443791092f63aeb6162c8a 236416 libtiff5_4.0.2-6+deb7u8_amd64.deb 61369d42abc10132d1e73d5abf145d9267ce0f8f51117eac7d6395130106bd63 75232 libtiffxx5_4.0.2-6+deb7u8_amd64.deb 133f3330c14c67bc878755c550e849f4a3ca820aaa029aa627c5fe977bf642a2 378922 libtiff5-dev_4.0.2-6+deb7u8_amd64.deb cda9a6e0dcdb40ff7db176a153ea5c3d2966198f1877474b5a70de14aeec12a2 299070 libtiff5-alt-dev_4.0.2-6+deb7u8_amd64.deb 9c18034ff231aea14a2412cd30d5e7d062c5bd86dd86162306f4e383164496cf 305446 libtiff-tools_4.0.2-6+deb7u8_amd64.deb e0596ae7e043999cbb7e1b5e2c869be250faa4932b9773621cc3b40645cfeeda 80742 libtiff-opengl_4.0.2-6+deb7u8_amd64.deb Files: a45850504db536cadee15c960a61807b 1896 libs optional tiff_4.0.2-6+deb7u8.dsc a50ad843261ce60f3a816979cf1bbb48 53852 libs optional tiff_4.0.2-6+deb7u8.debian.tar.gz c56b1e2bda22be7779c0fd8734068fcb 413916 doc optional libtiff-doc_4.0.2-6+deb7u8_all.deb 0b1985fa1bc2f3d5eb2070c49c430faa 236416 libs optional libtiff5_4.0.2-6+deb7u8_amd64.deb 673776f794baa4679f140ae7fb4e57f8 75232 libs optional libtiffxx5_4.0.2-6+deb7u8_amd64.deb 8321cde5d27bb4a3a4e73331678193f6 378922 libdevel optional libtiff5-dev_4.0.2-6+deb7u8_amd64.deb 196dcbdbf15eff65c0b2a4fef609fd19 299070 libdevel optional libtiff5-alt-dev_4.0.2-6+deb7u8_amd64.deb 9c9b3790789d06bf3dab25cf35158a60 305446 graphics optional libtiff-tools_4.0.2-6+deb7u8_amd64.deb 2ac67fb0cfc9390faeef2477b7902845 80742 graphics optional libtiff-opengl_4.0.2-6+deb7u8_amd64.deb -----BEGIN PGP SIGNATURE----- Comment: Signed by Raphael Hertzog iQEzBAEBCgAdFiEE1823g1EQnhJ1LsbSA4gdq+vCmrkFAlg0QMkACgkQA4gdq+vC mrnN+Qf9FOtqQFZDaqlHA/sV24JMTFVk9si8NO4wnmxUolYJiHHpkwYpNvKlQ4f3 brJXtGiIEB19dYlePH7SrcxwRTI+yKMGRBiN//LthX7sPuJudKdknBOY3xOpODvq /pR42M+/xvNc0LaqNuunRjI2fDzz5jKrm3hCv0CbVwZGSPwNK2UGqeGCufkoPoXu mfNjy3PQ34J70/f7yxDaAWLqZOY3G5oEcz8mxS7oCokZmAU6hXIvDEuIF7BT/2Mv DhV0bLmodA1FN0QmmuOq0cD8f//ooDIKlsLUJHd6EtEkDXsdoJ3TdBxEKrw2eXmi zAXXcHSDpzxYC/ABxWM4wPczbullDQ== =kIG5 -----END PGP SIGNATURE-----