[Secure-testing-team] Bug#820362: tiff: CVE-2016-3619: Memory corruption in DumpModeEncode triggered by crafted bmp file

Salvatore Bonaccorso carnil at debian.org
Thu Apr 7 18:47:29 UTC 2016


Source: tiff
Version: 4.0.2-6
Severity: important
Tags: security upstream

Hi,

the following vulnerability was published for tiff.

CVE-2016-3619[0]:
Memory corruption in DumpModeEncode triggered by crafted bmp file

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2016-3619

Regards,
Salvatore



More information about the Secure-testing-team mailing list