Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-02-03 Thread Jay Berkenbilt
Upstream appears to have a fix for this problem. I will test and prepare new packages tonight. -- Jay Berkenbilt <[EMAIL PROTECTED]> -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Jay Berkenbilt
Moritz Muehlenhoff <[EMAIL PROTECTED]> wrote: > 3.8.0 seems to have introduced two regressions that have DoS potential: > > | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 > | allows remote attackers to cause a denial of service (application > | crash) via a crafted TIFF image

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Jay Berkenbilt
Moritz Muehlenhoff <[EMAIL PROTECTED]> wrote: > Package: tiff > Severity: important > Tags: security > > Hi, > 3.8.0 seems to have introduced two regressions that have DoS potential: > > | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 > | allows remote attackers to cause a den

Bug#350715: CVE-2006-0405: DoS through null pointer dereference

2006-01-31 Thread Moritz Muehlenhoff
Package: tiff Severity: important Tags: security Hi, 3.8.0 seems to have introduced two regressions that have DoS potential: | The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 | allows remote attackers to cause a denial of service (application | crash) via a crafted TIFF image t