tiff: add upstream security fix for CVE-2017-10688
authorPeter Korsgaard <peter@korsgaard.com>
Fri, 14 Jul 2017 14:24:26 +0000 (16:24 +0200)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Fri, 14 Jul 2017 17:31:03 +0000 (19:31 +0200)
commit544ac6bca09edabb587db42ccb3ae51df58a3a56
tree56e498a3cc210fee6c4e23a1f4184793b6c744e6
parent31bd29fe093a258755929a23d764b02323fcdc46
tiff: add upstream security fix for CVE-2017-10688

Fixes CVE-2017-10688 - n LibTIFF 4.0.8, there is a assertion abort in the
TIFFWriteDirectoryTagCheckedLong8Array function in tif_dirwrite.c.  A
crafted input will lead to a remote denial of service attack.

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/tiff/0001-libtiff-tif_dirwrite.c-in-TIFFWriteDirectoryTagCheck.patch [new file with mode: 0644]