From mboxrd@z Thu Jan 1 00:00:00 1970 From: Kei Kebreau Subject: Re: Libtiff buffer overflow fix Date: Fri, 11 Nov 2016 00:04:43 -0500 Message-ID: <878tsq7gk4.fsf@openmailbox.org> References: <20161110232827.GA5592@jasmine> Mime-Version: 1.0 Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha256; protocol="application/pgp-signature" Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:33538) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1c541T-0003jL-00 for guix-devel@gnu.org; Fri, 11 Nov 2016 00:05:07 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1c541O-0001EJ-QN for guix-devel@gnu.org; Fri, 11 Nov 2016 00:05:06 -0500 Received: from smtp11.openmailbox.org ([62.4.1.45]:34338) by eggs.gnu.org with esmtps (TLS1.0:DHE_RSA_AES_128_CBC_SHA1:16) (Exim 4.71) (envelope-from ) id 1c541O-0001DK-I9 for guix-devel@gnu.org; Fri, 11 Nov 2016 00:05:02 -0500 In-Reply-To: <20161110232827.GA5592@jasmine> (Leo Famulari's message of "Thu, 10 Nov 2016 18:28:27 -0500") List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: Leo Famulari Cc: guix-devel@gnu.org --=-=-= Content-Type: text/plain Leo Famulari writes: > This patch fixes a buffer overflow in libtiff: > > http://bugzilla.maptools.org/show_bug.cgi?id=2587 > http://seclists.org/oss-sec/2016/q4/381 > > There is no CVE ID assigned yet. LGTM! --=-=-= Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJYJVFrAAoJEOal7jwZRnoNtGAQAKUE1r69vOW+CGBJSjBkVGi3 fNUOEWTFedWpsInvl0zwZYMQLb2A9/xh4If66tRrlNzowKvCohC6rbCCbF8tKLu/ 3YBhoSodEYllbCBh5GzyT+Qzv6HrYKjLFK1By2CsaN2fzgJ3kMOdu0P4WVbKhKFX 5BvJytLEY9GdZ69cg3c/JDIewKIfEopG513TTJAYe7/Rd0D30Gy/KVnkRIjEDi6e VH3aER3A9d2GYNZGsau0sI2eHFmo3PmcQx6caTMppyxnyNz0wXswHLsfmnlEt0cG kFckjdgpMxr5iyzAETG6Uvc3dDYEwTP2wT8uhYfC/Ou+v7fdNpUqmZA5L6uSoL9W fc8GCxlkkkQOA3eQpJ0RSI60pzgmgRskvZ2rPU6uWW4kJlKTekGxsnbQAmmKH0/w 0knQAYURgN2yWRqTrP68o6sWql/EBhybuYRzmJMCRcfM7R2ndO3Y29Qb1mZEK1XF 2Xm3Bl0gcnA7f5hn1KHc6V5hCZpErsvZMJfSC8ehhwDQdDuvT8HCEgqzeQSr10ek cmaf1MJ2Myb9NsbpZh1XytgLFq7JaSH96j2UZuJSwDXH0Ac/2iXIGSYl980cib3R 33bIkelYPT9zTbrjzgzSVwVSqP9o5DQKlchK0x8R6sBSwFgbPT3oaybL3CU5zNCQ 4MIXUMOa3D2BUwJpYC+4 =GjZC -----END PGP SIGNATURE----- --=-=-=--