<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="561e21d7e0d2db315c3ace938cb0f2a9"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2477">
  <id>dbg111-libtiff-devel</id>
  <title>libtiff: integer overflow can lead to corrupted heap</title>
  <release>openSUSE 11.1 DEBUGINFO</release>
  <issued date="1274745576"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=605837" id="605837" title="bug number 605837" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1411" id="CVE-2010-1411" title="CVE-2010-1411" type="cve"/>
  </references>
  <description>This update of libtiff fixes several integer overflows that
could lead to a corrupted heap memory. This bug can be
exploited remotely with a crafted TIFF file to cause an
application crash or probably to execute arbitrary code.
(CVE-2010-1411)
</description>
  <pkglist>
    <collection>
        <package name="tiff-debuginfo" arch="i586" version="3.8.2" release="133.39.1">
          <filename>tiff-debuginfo-3.8.2-133.39.1.i586.rpm</filename>
        </package>
        <package name="tiff-debuginfo" arch="ppc" version="3.8.2" release="133.39.1">
          <filename>tiff-debuginfo-3.8.2-133.39.1.ppc.rpm</filename>
        </package>
        <package name="tiff-debuginfo" arch="x86_64" version="3.8.2" release="133.39.1">
          <filename>tiff-debuginfo-3.8.2-133.39.1.x86_64.rpm</filename>
        </package>
        <package name="tiff-debugsource" arch="i586" version="3.8.2" release="133.39.1">
          <filename>tiff-debugsource-3.8.2-133.39.1.i586.rpm</filename>
        </package>
        <package name="tiff-debugsource" arch="ppc" version="3.8.2" release="133.39.1">
          <filename>tiff-debugsource-3.8.2-133.39.1.ppc.rpm</filename>
        </package>
        <package name="tiff-debugsource" arch="x86_64" version="3.8.2" release="133.39.1">
          <filename>tiff-debugsource-3.8.2-133.39.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
