From 70e4bd5c8f26b1f2baeb5146a841273b2cb15179 Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Tue, 30 May 2023 09:20:33 +0100 Subject: gentoo auto-resync : 30:05:2023 - 09:20:33 --- metadata/glsa/glsa-202305-31.xml | 53 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 53 insertions(+) create mode 100644 metadata/glsa/glsa-202305-31.xml (limited to 'metadata/glsa/glsa-202305-31.xml') diff --git a/metadata/glsa/glsa-202305-31.xml b/metadata/glsa/glsa-202305-31.xml new file mode 100644 index 000000000000..6a035f95e151 --- /dev/null +++ b/metadata/glsa/glsa-202305-31.xml @@ -0,0 +1,53 @@ + + + + LibTIFF: Multiple Vulnerabilities + Multiple vulnerabilities have been found in LibTIFF, the worst of which could result in arbitrary code execution. + tiff + 2023-05-30 + 2023-05-30 + 891839 + 895900 + remote + + + 4.5.0-r2 + 4.5.0-r2 + + + +

LibTIFF provides support for reading and manipulating TIFF (Tagged Image File Format) images.

+
+ +

Multiple vulnerabilities have been discovered in LibTIFF. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All LibTIFF users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=media-libs/tiff-4.5.0-r2" + +
+ + CVE-2022-48281 + CVE-2023-0795 + CVE-2023-0796 + CVE-2023-0797 + CVE-2023-0798 + CVE-2023-0799 + CVE-2023-0800 + CVE-2023-0801 + CVE-2023-0802 + CVE-2023-0803 + CVE-2023-0804 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3