]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
libtiff: backport Debian patch for CVE-2023-6277 & CVE-2023-52356
authorVijay Anusuri <vanusuri@mvista.com>
Fri, 22 Mar 2024 13:04:35 +0000 (18:34 +0530)
committerSteve Sakoman <steve@sakoman.com>
Mon, 25 Mar 2024 14:08:51 +0000 (04:08 -1000)
commit15abae1f6a9861e28ce35b015cb3ddc434f9fca4
treed5aa898e022057f292ede6e24fb72086a9ab5b1e
parentd0811b98fa3847dbbfcfe6a80694509bb29aaf9c
libtiff: backport Debian patch for CVE-2023-6277 & CVE-2023-52356

import patches from ubuntu to fix
 CVE-2023-6277
 CVE-2023-52356

Upstream-Status: Backport [import from ubuntu https://git.launchpad.net/ubuntu/+source/tiff/tree/debian/patches/?h=ubuntu%2Ffocal-security
Upstream commit
https://gitlab.com/libtiff/libtiff/-/commit/5320c9d89c054fa805d037d84c57da874470b01a
&
https://gitlab.com/libtiff/libtiff/-/commit/0b025324711213a75e38b52f7e7ba60235f108aa
&
https://gitlab.com/libtiff/libtiff/-/commit/de7bfd7d4377c266f81849579f696fa1ad5ba6c3
&
https://gitlab.com/libtiff/libtiff/-/commit/dbb825a8312f30e63a06c272010967d51af5c35a
&
https://gitlab.com/libtiff/libtiff/-/commit/51558511bdbbcffdce534db21dbaf5d54b31638a]

Signed-off-by: Vijay Anusuri <vanusuri@mvista.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-multimedia/libtiff/files/CVE-2023-52356.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/files/CVE-2023-6277-1.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/files/CVE-2023-6277-2.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/files/CVE-2023-6277-3.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/files/CVE-2023-6277-4.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/tiff_4.1.0.bb