tiff: security bump to version 4.0.4
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Mon, 22 Jun 2015 19:16:19 +0000 (16:16 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Mon, 22 Jun 2015 20:14:09 +0000 (22:14 +0200)
Fixes:
CVE-2014-8128 - Check memory allocations for failure. Also check
multiplication overflow.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/tiff/tiff.hash
package/tiff/tiff.mk

index 361b5e1b62ae3ea0a5d538aecc1497c42f434dc1..c594568142f6233c763968e9cf2332cbc1cc20be 100644 (file)
@@ -1,2 +1,2 @@
 # Locally computed
-sha256 ea1aebe282319537fb2d4d7805f478dd4e0e05c33d0928baba76a7c963684872        tiff-4.0.3.tar.gz
+sha256 8cb1d90c96f61cdfc0bcf036acc251c9dbe6320334da941c7a83cfe1576ef890        tiff-4.0.4.tar.gz
index 6db2abdc883dd49c8622b75266c8ea767cc30008..548e47a871ac6a023f4412210ef854a892e98274 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-TIFF_VERSION = 4.0.3
+TIFF_VERSION = 4.0.4
 TIFF_SITE = http://download.osgeo.org/libtiff
 TIFF_LICENSE = tiff license
 TIFF_LICENSE_FILES = COPYRIGHT