ELA-58-1 tiff3 security update

fix for out of bound write

2018-11-17
Packagetiff3
Version3.9.6-11+deb7u13
Related CVEs CVE-2018-18557


Out-of-bounds write due to ignoring buffer size can cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.



For Debian 7 Wheezy, these problems have been fixed in version 3.9.6-11+deb7u13.

We recommend that you upgrade your tiff3 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.