Fedora update for libtiff
Secunia Advisory: SA13629
Release Date: 2004-12-23
Popularity: 9,694 views

Critical:
Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

OS:Fedora Core 2
Fedora Core 3

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2004-1308


Description:
Fedora has issued an update for libtiff. This fixes a vulnerability, which can be exploited by malicious people to compromise a vulnerable system.

For more information:
SA13607

Solution:
Apply updated packages.

Fedora Core 2:

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/

a61d7738295e33663bd559e950a0ffe2 SRPMS/libtiff-3.5.7-21.fc2.src.rpm
0d4d9585b0efe3c2d6b12e192fba710e x86_64/libtiff-3.5.7-21.fc2.x86_64.rpm
3029673d8774199d44b86eb282be19ad x86_64/libtiff-devel-3.5.7-21.fc2.x86_64.rpm
ef55f622015d28d2a2904237c5990c60 x86_64/debug/libtiff-debuginfo-3.5.7-21.fc2.x86_64.rpm
d07013ed7c80369f9ad3beb6f6bd2148 x86_64/libtiff-3.5.7-21.fc2.i386.rpm
d07013ed7c80369f9ad3beb6f6bd2148 i386/libtiff-3.5.7-21.fc2.i386.rpm
c981efcef0a232cc627dec188bca76c4 i386/libtiff-devel-3.5.7-21.fc2.i386.rpm
9292074615b4a8cde6459aa8b19d7de1 i386/debug/libtiff-debuginfo-3.5.7-21.fc2.i386.rpm

Fedora Core 3:

http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/

0370e65c66788b4476863b29d697247e SRPMS/libtiff-3.6.1-8.fc3.src.rpm
2475b693e8188e003a54e94fca748031 x86_64/libtiff-3.6.1-8.fc3.x86_64.rpm
ba0f1e89001372552094f55dfe05fa66 x86_64/libtiff-devel-3.6.1-8.fc3.x86_64.rpm
43f170c08e8a6c1c53083d98469d5428 x86_64/debug/libtiff-debuginfo-3.6.1-8.fc3.x86_64.rpm
eca9284e795fcfe8e43f7fe7c15f8ee4 x86_64/libtiff-3.6.1-8.fc3.i386.rpm
eca9284e795fcfe8e43f7fe7c15f8ee4 i386/libtiff-3.6.1-8.fc3.i386.rpm
59492e392e5b0bd9e66ca8ee82627967 i386/libtiff-devel-3.6.1-8.fc3.i386.rpm
58ff2cbc072afc35eea2efc2bac42ea4 i386/debug/libtiff-debuginfo-3.6.1-8.fc3.i386.rpm

Other References:
SA13607:
http://secunia.com/advisories/13607/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. phpBB Cross Site Scripting and Unspecified Vulnerabilities // 24 views
2. Microsoft Word Malformed Object Pointer Vulnerability // 18 views
3. PHP Multiple Vulnerabilities // 18 views
4. PluggedOut Blog "index.php" SQL Injection Vulnerabilities // 17 views
5. Subdreamer Light Global Variables SQL Injection Vulnerability // 15 views
6. phpBB BBcode Script Insertion Vulnerability // 15 views
7. Microsoft Office Two Code Execution Vulnerabilities // 15 views
8. PHP "gdPngReadData()" Truncated PNG Data Denial of Service // 13 views
9. HP OpenView Select Identity Connectors Information Disclosure // 12 views
10. Fedora update for xastir // 12 views