Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-02-03 Thread Jay Berkenbilt
Upstream appears to have a fix for this problem. I will test and prepare new packages tonight. -- Jay Berkenbilt [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Moritz Muehlenhoff
Package: tiff Severity: important Tags: security Hi, 3.8.0 seems to have introduced two regressions that have DoS potential: | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 | allows remote attackers to cause a denial of service (application | crash) via a crafted TIFF image

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Jay Berkenbilt
Moritz Muehlenhoff [EMAIL PROTECTED] wrote: Package: tiff Severity: important Tags: security Hi, 3.8.0 seems to have introduced two regressions that have DoS potential: | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 | allows remote attackers to cause a denial of

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Jay Berkenbilt
Moritz Muehlenhoff [EMAIL PROTECTED] wrote: 3.8.0 seems to have introduced two regressions that have DoS potential: | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 | allows remote attackers to cause a denial of service (application | crash) via a crafted TIFF image that