Oval Definition:
oval:org.mitre.oval:def:23936
Revision Date
:
2014-05-26
Version
:
30
Title
:
ELSA-2012:1590: libtiff security update (Moderate)
Description
:
Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DOTRANGE tag in a TIFF image.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2012-3401
CVE-2012-4447
CVE-2012-4564
CVE-2012-5581
ELSA-2012:1590-01
Platform(s)
:
Oracle Linux 5
Oracle Linux 6
Product(s)
:
libtiff
Definition Synopsis
rpm test
Oracle Linux 5.x
AND
rpm test
libtiff is earlier than 0:3.8.2-18.el5_8
OR
libtiff-devel is earlier than 0:3.8.2-18.el5_8
OR
rpm test
Oracle Linux 6.x
AND
rpm test
libtiff is earlier than 0:3.9.4-9.el6_3
OR
libtiff-static is earlier than 0:3.9.4-9.el6_3
OR
libtiff-devel is earlier than 0:3.9.4-9.el6_3
BACK