-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ## ## Patch description of patch 18a037c784e0b7cd1b0d6d2d678e3b55 ## Kind: security Shortdescription.english: Security update for libtiff Longdescription.english: Applies to Package: libtiff Product(s): Release: 20050105 Obsoletes: none Indications Everyone should install this update. Contraindications None. Problem description iDEFENSE security reported a buffer overflow problem in the libtiff library, which could allow a remote attacker to execute code as the viewing user by using a handcrafted TIFF image file. Solution Please install the updates provided at the location noted below. Installation notes This update is provided as an RPM package that can easily be installed onto a running system by using this command: rpm -Fvh libtiff.rpm Hsilgne.noitpircsedgnol: Size: 466 MinYaST1Version: MinYaST2Version: UpdateOnlyInstalled: true Packages: ## ## -----> libtiff <----- ## Filename: libtiff.rpm Label: Tiff Library (with jpeg and compression support) Series: i586 Size: 1810859 477397 PatchRpmBasedOn: 3.5.7-156 3.5.7-376 3.5.7-376 PatchRpmSize: 1810859 465376 Buildtime: 1104839171 DepAND: DepOR: DepExcl: Flag: Category: RpmGroup: System/Libraries Copyright: Other License(s), see package, FSR AuthorName: Sam Leffler AuthorAddress: Version: 3.5.7-379 StartCommand: Obsoletes: Requires: ld-linux.so.2 libc.so.6 libc.so.6(GLIBC_2.0) libc.so.6(GLIBC_2.1) libc.so.6(GLIBC_2.1.3) libjpeg.so.62 libm.so.6 libm.so.6(GLIBC_2.0) libz.so.1 rpmlib(PayloadIsBzip2) <= 3.0.5-1 Provides: libtiff-devel libtiff.so.3 Segakcap: -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.0.7 (GNU/Linux) iD8DBQFB3B+MqE7a6JyACsoRArSNAJ0cc+5sEkCpDwfSkytXyLRzjth3wACf XpdgJuaL3aVeC2f0+iwxUkm/DX4= =jOTI -----END PGP SIGNATURE-----