tiff security update
specially crafted tiff images could cause buffer overflows
in libtiff (CVE-2011-0191, CVE-2011-0192).
- Submitted by Adrian Schröter (adrianSuSE)
- Version 4144
Fixed bugs
bnc#672510
VUL-0: libtiff: Buffer overflow in Fax4Decode and Buffer overflow in vec_ycc_rgb_convert/JPEGDecode
CVE#CVE-2011-0191
Buffer overflow in LibTIFF 3.9.4 and possibly other versions, as used in ImageIO in Apple iTunes before 10.2 on Windows and other products, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TI
CVE#CVE-2011-0192
Buffer overflow in Fax4Decode in LibTIFF 3.9.4 and possibly other versions, as used in ImageIO in Apple iTunes before 10.2 on Windows and other products, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) vi