Two tiff issues: CVE-2012-2113 / CVE-2012-2088

Bug #1016324 reported by Karma Dorje
262
This bug affects 1 person
Affects Status Importance Assigned to Milestone
tiff (Debian)
Fix Released
Unknown
tiff (Ubuntu)
Fix Released
Undecided
Unassigned

Bug Description

From secunia security advisory at URL [1]:

Description
A vulnerability has been reported in LibTIFF, which can be exploited by malicious people to compromise an application using the library.

The vulnerability is caused due to an integer overflow error in the "tiff2pdf" utility when parsing images and can be exploited to cause a buffer overflow via a specially crafted TIFF image.

Successful exploitation may allow execution of arbitrary code, but requires tricking a user into converting a malicious image.

The vulnerability is reported in versions prior to 4.0.2.

Solution
Update to version 4.0.2.

[1] https://secunia.com/advisories/49493/

Two new tiff issues have been repored to Red Hat bugzilla, please see these bugs for details:

https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2088
https://bugzilla.redhat.com/show_bug.cgi?id=810551 (CVE-2012-2113)

Karma Dorje (taaroa)
visibility: private → public
Changed in tiff (Debian):
status: Unknown → New
Karma Dorje (taaroa)
security vulnerability: no → yes
visibility: public → private
visibility: private → public
Changed in tiff (Ubuntu):
status: New → Triaged
Changed in tiff (Debian):
status: New → Fix Released
Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package tiff - 3.9.5-2ubuntu2

---------------
tiff (3.9.5-2ubuntu2) quantal; urgency=low

  * SECURITY UPDATE: possible arbitrary code execution via buffer overflow
    due to type-conversion flaw (LP: #1016324)
    - debian/patches/CVE-2012-2088.patch: check for overflows in
      libtiff/tif_strip.c and libtiff/tif_tile.c.
    - CVE-2012-2088
  * SECURITY UPDATE: possible arbitrary code execution via integer
    overflows in tiff2pdf (LP: #1016324)
    - debian/patches/CVE-2012-2113.patch: check for overflows in
      tools/tiff2pdf.c.
    - CVE-2012-2113
 -- Marc Deslauriers <email address hidden> Thu, 05 Jul 2012 09:13:37 -0400

Changed in tiff (Ubuntu):
status: Triaged → Fix Released
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.