Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia 7: 2021-0098 Moderate: LibTiff Heap Overflow and Fix

mageia
Calendar Grey March 4, 2021
Dist Mageia Esm H88
Revised libjpeg packages address weaknesses such as buffer and memory overruns. Important security alert for Fedora users.
The updated libtiff packages fix security vulnerabilities: - Integer overflow in tif_getimage.c (CVE-2020-35523)

Summary

The updated libtiff packages fix security vulnerabilities: - Integer overflow in tif_getimage.c (CVE-2020-35523). - Heap-based buffer overflow in TIFF2PDF tool (CVE-2020-35524).

References

- https://bugs.mageia.org/show_bug.cgi?id=28455

- https://ubuntu.com/security/notices/USN-4755-1

- https://www.cve.org/CVERecord?id=CVE-2020-35523

- https://www.cve.org/CVERecord?id=CVE-2020-35524

Resolution

SRPMS

- 7/core/libtiff-4.2.0-1.mga7

Publication date: 04 Mar 2021
URL: https://advisories.mageia.org/MGASA-2021-0098.html
Type: security
CVE: CVE-2020-35523, CVE-2020-35524

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here