Oval Definition:
oval:org.mitre.oval:def:21373
Revision Date
:
2014-02-24
Version
:
63
Title
:
RHSA-2012:1590: libtiff security update (Moderate)
Description
:
Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DOTRANGE tag in a TIFF image.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CESA-2012:1590
CVE-2012-3401
CVE-2012-4447
CVE-2012-4564
CVE-2012-5581
RHSA-2012:1590-01
Platform(s)
:
CentOS Linux 5
CentOS Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Product(s)
:
libtiff
Definition Synopsis
Operation system section
Redhat 5 or Centos 5 release
The operating system installed on the system is Red Hat Enterprise Linux 5
OR
The operating system installed on the system is CentOS Linux 5.x
AND
Packages section
libtiff is earlier than 0:3.8.2-18.el5_8
OR
libtiff-devel is earlier than 0:3.8.2-18.el5_8
Operation system section
Redhat 6 or Centos 6 release
The operating system installed on the system is Red Hat Enterprise Linux 6
OR
The operating system installed on the system is CentOS Linux 6.x
AND
Packages section
libtiff is earlier than 0:3.9.4-9.el6_3
OR
libtiff-static is earlier than 0:3.9.4-9.el6_3
OR
libtiff-devel is earlier than 0:3.9.4-9.el6_3
BACK