-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 15 Apr 2018 12:20:17 -0400 Source: tiff3 Binary: libtiff4 libtiffxx0c2 libtiff4-dev Architecture: source amd64 Version: 3.9.6-11+deb7u10 Distribution: wheezy-security Urgency: high Maintainer: Jay Berkenbilt <qjb@debian.org> Changed-By: Hugo Lefeuvre <hle@debian.org> Description: libtiff4 - Tag Image File Format (TIFF) library (old version) libtiff4-dev - Tag Image File Format (TIFF) library (old version), development f libtiffxx0c2 - Tag Image File Format (TIFF) library (old version) -- C++ interfa Closes: 891288 Changes: tiff3 (3.9.6-11+deb7u10) wheezy-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2018-7456: NULL Pointer Dereference occurs in TIFFPrintDirectory() via crafted TIFF image defining illegal SamplesPerPixel or Transfer Function fields (Closes: #891288). Checksums-Sha1: c6353224c2f9d2a047ec079555ae3a47ce20b577 1619 tiff3_3.9.6-11+deb7u10.dsc 234e8dc40fbf789a2385c46295cb27a29ec6feef 52031 tiff3_3.9.6-11+deb7u10.debian.tar.gz f65f2076a0238e3bc30e4ae91b5a8bc7c706f52d 206610 libtiff4_3.9.6-11+deb7u10_amd64.deb 4b81301ae29c08ada74283b906a723c0a6854728 65990 libtiffxx0c2_3.9.6-11+deb7u10_amd64.deb 6b328907b2207d4cf0c736f8fbd3428db0f71e64 342078 libtiff4-dev_3.9.6-11+deb7u10_amd64.deb Checksums-Sha256: 008d75f0e64e259bf5bff4f3869fd9a161fd40eabf08160561a8c720954be16f 1619 tiff3_3.9.6-11+deb7u10.dsc f876224e53d4b3e9f9b65921f2480af78078ca8f9dae566f06af25ea80677e3e 52031 tiff3_3.9.6-11+deb7u10.debian.tar.gz b30cb3820a736746dc703028a5fad5211aad5ea0e8cf720e18a2623dfcd63545 206610 libtiff4_3.9.6-11+deb7u10_amd64.deb 674dbe55e0ed029e932b5021b2183e8dbf7ed54e3afa93c8a63b9c7bbd0d185f 65990 libtiffxx0c2_3.9.6-11+deb7u10_amd64.deb 8af6859ce89783f7a23650beec09e21f00d9bf8fbe4f123d07ed4dee5e2fd3bd 342078 libtiff4-dev_3.9.6-11+deb7u10_amd64.deb Files: 44afbb40eb73d4ae76efb6d52e799b9b 1619 oldlibs optional tiff3_3.9.6-11+deb7u10.dsc da6e826e0016a918c40a68b08a7e0b97 52031 oldlibs optional tiff3_3.9.6-11+deb7u10.debian.tar.gz a311c89026d0582f199c772358c1f3ce 206610 oldlibs optional libtiff4_3.9.6-11+deb7u10_amd64.deb 413cd7204cc4d464b2a2f3c1e53d4ae8 65990 oldlibs optional libtiffxx0c2_3.9.6-11+deb7u10_amd64.deb 12bcb3cf77616dc91b19fa7458d39eab 342078 libdevel optional libtiff4-dev_3.9.6-11+deb7u10_amd64.deb -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEE5LpPtQuYJzvmooL3LVy48vb3khkFAlrT+18ACgkQLVy48vb3 khkLfAf/UByCrATCs0+Fr8zN/QKdTe3RI3LtILGHUR0eEFX3l9z8OjLuPsa7JvCd 6iMENNmX5Ghfa5Uysaw8SoWDyPZud8qfhKrJuTJXd5wGU8KJnj4aTfLmOQKk+QAI xSfLMPPhtCVTysnkeE2nbieMKMHN0hsEU2UVHJxARLqeI0qk9+f3NDsllofFLcMb vAsX4+NumYfzNeQNLHk2wvuciuBA2RNkG7A8W/Zod+GxImePfKqtxEkdqK5/cjXB 8Us+e+8OEL+1H591JCN3HZH9Ft9hFdyA0e6B+QS0t0A4lcO0Gx58uPDYxo+sutTt KMsftSyjPP9gPmQrhFCmo58SspfQnw== =IEbx -----END PGP SIGNATURE-----