Bug#309739: woody is still vulnerable to CAN-2005-1544

2005-07-10 Thread Martin Schulze
Jay Berkenbilt wrote: > > Some time ago, a bug was posted about tiff being vulnerable to > CAN-2005-1544: a bug that caused and exploitable segmentation fault on > files with certain bad BitsPerSample values (making it a potential DOS > bug). The fix is already in sarge. I had posted a patch aga

Bug#309739: woody is still vulnerable to CAN-2005-1544

2005-07-09 Thread Jay Berkenbilt
Jay Berkenbilt <[EMAIL PROTECTED]> wrote: > The attached patch is identical to the other one except that it also > patches debian/changelog. Feel free to disregard that part and > treat this a security NMU. Of course, my patch had a distribution of unstable which is obviously wrong. But you wo

Bug#309739: woody is still vulnerable to CAN-2005-1544

2005-07-09 Thread Jay Berkenbilt
Some time ago, a bug was posted about tiff being vulnerable to CAN-2005-1544: a bug that caused and exploitable segmentation fault on files with certain bad BitsPerSample values (making it a potential DOS bug). The fix is already in sarge. I had posted a patch against the version of the package