]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core-contrib.git/commit
tiff: fix CVE-2023-41175
authorYogita Urade <yogita.urade@windriver.com>
Fri, 15 Sep 2023 07:34:49 +0000 (07:34 +0000)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Wed, 20 Sep 2023 07:55:49 +0000 (08:55 +0100)
commit4ee806cbc12fbc830b09ba6222e96b1e5f24539f
tree9c1883b0d80a09021ddf704d8a86354b7a4d6a27
parentc3d4fbeb51278a04a6800c894c681733ad2259ca
tiff: fix CVE-2023-41175

libtiff: potential integer overflow in raw2tiff.c

References:
https://bugzilla.redhat.com/show_bug.cgi?id=2235264
https://security-tracker.debian.org/tracker/CVE-2023-41175
https://gitlab.com/libtiff/libtiff/-/issues/592

Signed-off-by: Yogita Urade <yogita.urade@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-multimedia/libtiff/files/CVE-2023-41175.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/tiff_4.5.1.bb