Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 75423 - media-libs/tiff: tiffdump crash on test image
Summary: media-libs/tiff: tiffdump crash on test image
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All All
: High normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard: B2 [upstream] koon CLASSIFIED
Keywords:
Depends on:
Blocks: 75213
  Show dependency tree
 
Reported: 2004-12-23 02:47 UTC by Thierry Carrez (RETIRED)
Modified: 2006-12-27 01:11 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
Patch for tiffdump issue (tiffdump.patch,439 bytes, patch)
2004-12-23 02:52 UTC, Thierry Carrez (RETIRED)
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Thierry Carrez (RETIRED) gentoo-dev 2004-12-23 02:47:41 UTC
This is a restricted bug.

Test image from ftp://ftp.altlinux.org/pvt/people/ldv/1x1.tiff crashes tiffdump, not sure if it's exploitable, but should be fixed together with bug 75213.

We're waiting for a final patch from v-s.
Comment 1 Thierry Carrez (RETIRED) gentoo-dev 2004-12-23 02:52:29 UTC
Created attachment 46702 [details, diff]
Patch for tiffdump issue

Here is the proposed patch (from Dmitry Levin).

nerdboy: It's not public yet so you shouldn't include it in portage, but you're
allowed to privately test it :)
Comment 2 Thierry Carrez (RETIRED) gentoo-dev 2005-01-02 14:08:46 UTC
The tiffdump patch can now be included, please bump to -r2 with this additional patch.
Comment 3 Steve Arnold archtester gentoo-dev 2005-01-02 18:12:35 UTC
Both this patch and the transparency patch are in -r1.
Comment 4 Steve Arnold archtester gentoo-dev 2005-01-02 18:21:58 UTC
Sorry, closing...