Debian Linux Users - TIFF library vulnerability

posted on Aug, 4 2006 @ 12:45 AM
Just when we thought it was safe to be on Linux... Debian has a problem in LibTIFF and have released new packages (again). At least they are fast in offering the fix which if unapplied can allow a DOS through an overflow... and some other stuff - all not good.

As reported from the NIST US National Vulnerabilty database: CVE 2006 - 3459 thru CVE 2006 - 3465

Debian's documentation of the trouble is here:

and more helpful the patch packages are at Debian - you'd want the stable "sarge" packages 3.7.2-7 :

Victor K.

[edit on 4-8-2006 by V Kaminski]

