On Thu, Dec 20, 2018 at 09:03:08AM +0800, zzt0907 wrote:
> # LibTIFF 4.0.8 has multiple memory leak vulnerabilities (CVE-2017-16232)
> https://github.com/shelltdf/libtiff/commit/25f9ffa56548c1846c4a1f19308b7f561f7b1ab0
I'm curious why do you post about minor memory leak after over year from fix,
#CVE-2017-16232
# LibTIFF 4.0.8 has multiple memory leak vulnerabilities (CVE-2017-16232)
## Product Download: http://www.libtiff.org/ http://download.osgeo.org/libtiff/
## Vulnerability Type??memory leak
## Attack Type : local
## Vulnerability Description
LibTIFF 4.0.8 has multiple memory leak