oss-sec mailing list archives
Re: Re: CVE Request: libtiff: heap buffer overflow/read outside of array
From: Bob Friesenhahn <bfriesen () simple dallas tx us>
Date: Wed, 9 Nov 2016 20:41:09 -0600 (CST)
On Wed, 9 Nov 2016, Ian Zimmerman wrote:
On 2016-11-09 17:32, Brian 'geeknik' Carpenter wrote:http://bugzilla.maptools.org/show_bug.cgi?id=2587 Fixed per2016-11-10 Even Rouault <even.rouault at spatialys.com>I tried to check out the sources to patch this for myself, following the recipe from the webpage:
At the moment, "the web page" should be one of: http://www.simplesystems.org/libtiff/ http://libtiff.maptools.org/ And this is the description of how to obtain files from CVS: export CVSROOT=:pserver:cvsanon () cvs maptools org:/cvs/maptools/cvsroot cvs login (use empty password) cvs checkout libtiff to get the stable libtiff code Bob -- Bob Friesenhahn bfriesen () simple dallas tx us, http://www.simplesystems.org/users/bfriesen/ GraphicsMagick Maintainer, http://www.GraphicsMagick.org/
Current thread:
- CVE Request: libtiff: heap buffer overflow/read outside of array Brian 'geeknik' Carpenter (Nov 09)
- Re: CVE Request: libtiff: heap buffer overflow/read outside of array Ian Zimmerman (Nov 09)
- Re: Re: CVE Request: libtiff: heap buffer overflow/read outside of array Bob Friesenhahn (Nov 09)
- Re: CVE Request: libtiff: heap buffer overflow/read outside of array cve-assign (Nov 11)
- Re: CVE Request: libtiff: heap buffer overflow/read outside of array Ian Zimmerman (Nov 09)