[Git][security-tracker-team/security-tracker][master] Track fixed version via unstable for tiff issue
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Jun 19 05:06:45 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
bea74118 by Salvatore Bonaccorso at 2026-06-19T06:06:15+02:00
Track fixed version via unstable for tiff issue
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1927,7 +1927,7 @@ CVE-2026-53612 [Local Privilege Escalation via TOCTOU in mount(8) hook_owner.c c
NOTE: https://github.com/util-linux/util-linux/security/advisories/GHSA-g8wm-75wr-g2vh
NOTE: Fixed by: https://github.com/util-linux/util-linux/commit/d0c5adaeb3a3d823aba1377794de8f009b8152cc (v2.42.2)
CVE-2026-36849 [Denial of Service via large SamplesPerPixel tag]
- - tiff <unfixed> (bug #1140300)
+ - tiff 4.7.1-3 (bug #1140300)
NOTE: https://www.openwall.com/lists/oss-security/2026/06/17/1
NOTE: https://gitlab.com/libtiff/libtiff/-/work_items/781
NOTE: Fixed by: https://gitlab.com/libtiff/libtiff/-/commit/eedba405d3695b52faae65994c5904f228eca0bf
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bea74118e3dd3ea867ca38e635a28fd8690ddbd7
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bea74118e3dd3ea867ca38e635a28fd8690ddbd7
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260619/4fa5b37d/attachment.htm>
More information about the debian-security-tracker-commits
mailing list