2008.08.29 22:53 "[Tiff] Some security fixes from RHEL", by Even Rouault

2008.08.31 21:21 "Re: [Tiff] Some security fixes from RHEL", by Olaf_Drümmer

Hi Rogier,

On 31.08.2008, at 23:09, Rogier Wolff wrote:

For the record, I find your statement rediculous.

I actually find the statement right the opposite of being ridiculous.

The statement very clearly describes the relevant aspects of the matter at hand, and based on that gives a strong recommendation.

You can't blame libtiff (nor the volunteers behind it who have dedicated so much resources) for being used so widely. Still, everyone will have to use it at their own risk.

Vulnerabilities exploited through the internet is not something one should ignore. Depending on your needs and priorities it may be acceptable to use software linked against libtiff, or it may not be acceptable. Only you as the user can decide.

Olaf

--

Olaf Druemmer | Managing Director | callas software GmbH | Schoenhauser Allee 6/7 | 10119 Berlin

Tel +49.30.4439031-0 | Fax +49.30.4416402 | o.druemmer@callassoftware.com 

  | www.callassoftware.com

Amtsgericht Charlottenburg, HRB 59615 | Geschäftsführung: Olaf Drümmer, Ulrich Frotscher