| Summary: | libtiff new security issue CVE-2022-1056 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | Mageia Bug Squad <bugsquad> |
| Status: | RESOLVED DUPLICATE | QA Contact: | Sec team <security> |
| Severity: | major | ||
| Priority: | Normal | CC: | nicolas.salguero |
| Version: | Cauldron | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA8TOO | ||
| Source RPM: | libtiff-4.3.0-5.mga9.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2022-05-16 20:22:59 CEST
David Walser
2022-05-16 20:23:19 CEST
CC:
(none) =>
nicolas.salguero Hi, According to openSUSE and Debian, the commit that fixes CVE-2022-1056 is https://gitlab.com/libtiff/libtiff/-/commit/232282fd8f9c21eefe8d2d2b96cdbbb172fe7b7c. The patch from that commit was already added to fix the CVEs from bug 30210. Best regards, Nico. |