Bug 25853

Summary: libtiff possible new security issue CVE-2019-14973
Product: Mageia Reporter: David Walser <luigiwalser>
Component: SecurityAssignee: Nicolas Salguero <nicolas.salguero>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: normal    
Priority: Normal    
Version: 7   
Target Milestone: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Source RPM: libtiff-4.1.0-2.git20191120.1.mga7.src.rpm CVE: CVE-2019-14973
Status comment:

Description David Walser 2019-12-10 23:55:33 CET
SUSE has issued an advisory on November 25:
http://lists.suse.com/pipermail/sle-security-updates/2019-November/006177.html
Comment 1 Nicolas Salguero 2019-12-11 09:43:47 CET
Hi,

That CVE is already fixed in libtiff-4.1.0-2.git20191120.1.mga7 which was pushed to updates.

Best regards,

Nico.

Status: NEW => RESOLVED
Resolution: (none) => FIXED
CVE: (none) => CVE-2019-14973
Source RPM: libtiff-4.0.10-6.git20190508.1.mga7.src.rpm => libtiff-4.1.0-2.git20191120.1.mga7.src.rpm

Comment 2 David Walser 2019-12-11 14:45:45 CET
Thanks.

*** This bug has been marked as a duplicate of bug 25777 ***

Resolution: FIXED => DUPLICATE