Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Mandriva: Subject: [Security Announce] [ MDVSA-2008:184 ] libtiff

BugsAlert Home > Mandriva: Subject: [Security Announce] [ MDVSA-2008:184 ] libtiff
 
 

LinuxSecurity.com: Drew Yaro of the Apple Product Security Team reported multiple uses of uninitialized values in libtiff's LZW compression algorithm decoder. An attacker could create a carefully crafted LZW-encoded TIFF file that would cause an application linked to libtiff to crash or potentially execute arbitrary code (CVE-2008-2327). The updated packages have been patched to prevent this issue.




Original Source: http://www.linuxsecurity.com/content/view/141235?rdf

Learn more about Mandriva: Subject: [Security Announce] [ MDVSA-2008:184 ] libtiff
 
Tags: mandriva subject security announce mdvsa-2008 184 libtiff

Related Items

      iMesh IMWebControl Class ActiveX Control Code Execution Vulnerability

      CVE-2008-1139 (DESlock)

      CVE-2008-4344 (6rbscript)

      Ubuntu Security Update Fixes Squid Cache Update Reply DoS Issue

      FrSIRT - Fedora Security Update Fixes CenterIM Command Injection Vulnerability

      FrSIRT - Apache "mod_proxy_ftp" Module Cross Site Scripting Vulnerability

      use with non-compound name *has* effect

 

Pixel