Package libtiff: Information

  • Default inline alert: Version in the repository: 4.4.0-alt2

Source package: libtiff
Version: 4.0.10.0.57.f9fc01c3-alt1
Build time:  Apr 10, 2019, 03:21 AM in the task #226958
Category: System/Libraries
Report package bug
License: BSD-style
Summary: Library of functions for manipulating TIFF format image files
Description: 
This package contains a library of functions for manipulating
TIFF (Tagged Image File Format) image format files.  TIFF is a widely
used file format for bitmapped images.  TIFF files usually end in the
.tif extension and they are often quite large.

List of rpms provided by this srpm:
libtiff-devel (x86_64, i586, aarch64)
libtiff-utils (x86_64, i586, aarch64)
libtiff-utils-debuginfo (x86_64, i586, aarch64)
libtiff5 (x86_64, i586, aarch64)
libtiff5-debuginfo (x86_64, i586, aarch64)
libtiffxx-devel (x86_64, i586, aarch64)
libtiffxx5 (x86_64, i586, aarch64)
libtiffxx5-debuginfo (x86_64, i586, aarch64)
tiffgt (x86_64, i586, aarch64)
tiffgt-debuginfo (x86_64, i586, aarch64)



    1. libSM-devel
    2. libXi-devel
    3. libXmu-devel
    4. libjbig-devel
    5. libjpeg-devel
    6. gcc-c++
    7. libwebp-devel
    8. liblzma-devel
    9. libfreeglut-devel
    10. libzstd-devel
    11. zlib-devel

Last changed


April 9, 2019 Vladimir D. Seleznev 4.0.10.0.57.f9fc01c3-alt1
- Updated to v4.0.10-57-gf9fc01c3 (ALT #36575, #34677).
- Applied SUSE patches:
  + tiff-4.0.3-seek.patch;
  + tiff-4.0.3-compress-warning.patch;
  + tiff-CVE-2018-12900.patch.
- Built with support of:
  + libjbig;
  + libwebp;
  + libzstd.
- Fixes:
  + CVE-2012-4564 Zero size buffer exploit in ppm2tiff;
  + CVE-2013-1960 Heap-based buffer overflow in the t2p_process_jpeg_strip();
  + CVE-2013-4232 Use-after-free vulnerability in the t2p_readwrite_pdf_image();
  + CVE-2013-4243 Heap-based buffer overflow in the readgifimage();
  + CVE-2013-4244 DoS or possible RCE via crafted GIF image;
  + CVE-2014-8127 Out-of-bounds read with malformed TIFF image in multiple tool;
  + CVE-2014-8129 Out-of-bounds read/write with malformed TIFF image in tiff2pdf;
  + CVE-2014-8130 Divide-by-zero error in _TIFFmalloc();
  + CVE-2014-9330 Integer overflow in tif_packbits.c in bmp2tif;
  + CVE-2015-8870 Integer overflow in tools/bmp2tiff.c (DoS or information leak);
  + CVE-2018-5360 Heap-based buffer overflow in the ReadTIFFImage().
Sept. 23, 2012 Dmitry V. Levin 4.0.3-alt1
- Updated to Release-v4-0-3.
Sept. 2, 2012 Dmitry V. Levin 4.0.2-alt2
- Updated to Release-v4-0-2-21-g8520941.
- Renamed: libtiff -> libtiff5, libtiffxx -> libtiffxx5.