[Git][security-tracker-team/security-tracker][master] track fixed CVE for tiff

Aron Xu (@aron) aron at debian.org
Thu Feb 23 09:11:00 GMT 2023



Aron Xu pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8c5218b5 by Aron Xu at 2023-02-23T17:10:17+08:00
track fixed CVE for tiff

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -22557,6 +22557,7 @@ CVE-2022-3971 (A vulnerability was found in matrix-appservice-irc up to 0.35.1.
 CVE-2022-3970 (A vulnerability was found in LibTIFF. It has been classified as critic ...)
 	{DLA-3278-1}
 	- tiff 4.4.0-6 (bug #1024737)
+	[bullseye] - tiff 4.2.0-1+deb11u3
 	NOTE: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=53137
 	NOTE: https://gitlab.com/libtiff/libtiff/-/commit/227500897dfb07fb7d27f7aa570050e62617e3be
 	NOTE: https://oss-fuzz.com/download?testcase_id=5738253143900160
@@ -30040,6 +30041,7 @@ CVE-2022-3627 (LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtif
 CVE-2022-3626 (LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif ...)
 	{DLA-3278-1}
 	- tiff 4.4.0-5 (bug #1022555)
+	[bullseye] - tiff 4.2.0-1+deb11u3
 	NOTE: https://gitlab.com/libtiff/libtiff/-/commit/236b7191f04c60d09ee836ae13b50f812c841047
 	NOTE: https://gitlab.com/libtiff/libtiff/-/issues/426
 CVE-2022-3625 (A vulnerability was found in Linux Kernel. It has been classified as c ...)
@@ -30131,6 +30133,7 @@ CVE-2022-3599 (LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in
 CVE-2022-3598 (LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifte ...)
 	{DLA-3278-1}
 	- tiff 4.4.0-5 (bug #1022555)
+	[bullseye] - tiff 4.2.0-1+deb11u3
 	NOTE: https://gitlab.com/libtiff/libtiff/-/commit/cfbb883bf6ea7bedcb04177cc4e52d304522fdff (v4.5.0rc1)
 	NOTE: https://gitlab.com/libtiff/libtiff/-/issues/435
 CVE-2022-3597 (LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c5218b5345302eeebc2eb62c7485ff0d4f7a9bb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8c5218b5345302eeebc2eb62c7485ff0d4f7a9bb
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230223/94523199/attachment.htm>


More information about the debian-security-tracker-commits mailing list