Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Debian Bullseye DSA-5333-1 Critical: Tiff Buffer Overflow Issues

debian
Calendar Grey January 29, 2023
Debian Logo
Revise tiff software to mitigate severe buffer overflow vulnerabilities as described in Debian DSA-5333-1.
Several buffer overflow, divide by zero or out of bounds read/write vulnerabilities were discovered in tiff, the Tag Image File Format (TIFF) library and tools, which may cause den...

Summary

For the stable distribution (bullseye), these problems have been fixed in
version 4.2.0-1+deb11u3.

We recommend that you upgrade your tiff packages.

For the detailed security status of tiff please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/tiff

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: tiff
CVE ID: CVE-2022-1354 CVE-2022-1355 CVE-2022-1622 CVE-2022-1623

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here