USN-2939-1: LibTIFF vulnerabilities
USN-2939-1: LibTIFF vulnerabilities Ubuntu Security Notice USN-2939-1 23rd March, 2016 tiff vulnerabilities A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 15.10 Ubuntu 14.04 LTS Ubuntu 12.04 LTS Summary LibTIFF could be made to crash or run programs as your login if it opened a specially crafted file. Software description tiff – Tag Image File Format (TIFF) library Details It was discovered that LibTIFF incorrectly handled certain malformedimages. If a user or automated system were tricked into opening a speciallycrafted image, a remote attacker could crash the application, leading to adenial of service, or possibly execute arbitrary code with user privileges. Update instructions The problem can be corrected by updating your system to the following package version: Ubuntu 15.10: libtiff5 4.0.3-12.3ubuntu2.1 Ubuntu 14.04 LTS: libtiff5 4.0.3-7ubuntu0.4 Ubuntu 12.04 LTS: libtiff4 3.9.5-2ubuntu1.9 To update your system, please follow [ more… ]