]> git.ipfire.org Git - thirdparty/openembedded/openembedded-core.git/commit
tiff: fix multiple CVEs
authorChee Yang Lee <chee.yang.lee@intel.com>
Thu, 2 Mar 2023 05:26:06 +0000 (13:26 +0800)
committerSteve Sakoman <steve@sakoman.com>
Wed, 8 Mar 2023 15:05:06 +0000 (05:05 -1000)
commitd9ce9b37236f5c16ffba4572ad720aeb50edeee9
tree953470f3f014f83366dc415fab8e7ffa617edf04
parentb995ea45773211bd7bdd60eabcc9bbffda6beb5c
tiff: fix multiple CVEs

import patch from debian to fix
CVE-2022-48281
http://security.debian.org/debian-security/pool/updates/main/t/tiff/tiff_4.2.0-1+deb11u4.debian.tar.xz

import patch from fedora to fix
CVE-2023-0800
CVE-2023-0801
CVE-2023-0802
CVE-2023-0803
CVE-2023-0804
https://src.fedoraproject.org/rpms/libtiff/c/91856895aadf3cce6353f40c2feef9bf0b486440

Signed-off-by: Chee Yang Lee <chee.yang.lee@intel.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
meta/recipes-multimedia/libtiff/files/CVE-2022-48281.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/files/CVE-2023-0800_0801_0802_0803_0804.patch [new file with mode: 0644]
meta/recipes-multimedia/libtiff/tiff_4.4.0.bb