2010.12.06 16:32 "[Tiff] Security vulnerability CVE-2010-3847", by imipak

2010.12.07 16:07 "Re: [Tiff] Security vulnerability CVE-2010-3847", by imipak

Hi Lee,

On 6 December 2010 18:44, Lee Howard <faxguy@howardsilvan.com> wrote:

I notice that Mandriva and SuSE have released updates for their

libtiff packages to fix for CVE-2010-3087, but there doesn't seem to

>> be any sign of it in the changelog for 3.9.4 (or, indeed, earlier>> releases.)

Is there any ETA for a fix on the main source tree?

>  The various

distros are using Tom Lane's patch on...

http://bugzilla.maptools.org/show_bug.cgi?id=2140

... as a resolution to CVE-2010-3087.

I think this patch solves our problem. Thanks for the swift response!

cheers

-i

--
  wake up the past
    and tell it to stay away