[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

[SECURITY] [DLA 963-1] exiv2 security update



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Package        : exiv2
Version        : 0.23-1+deb7u1
CVE ID         : CVE-2017-9239
Debian Bug     : 863410

It was discovered that the exiv2 library fails to parse some crafted
tiff images, leading to denial of service via application crash.

For Debian 7 "Wheezy", these problems have been fixed in version
0.23-1+deb7u1.

We recommend that you upgrade your exiv2 packages.

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS
-----BEGIN PGP SIGNATURE-----
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=blI0
-----END PGP SIGNATURE-----


Reply to: