tiff 4.5.1+git230720-4ubuntu2.4 source package in Ubuntu

Changelog

tiff (4.5.1+git230720-4ubuntu2.4) noble-security; urgency=medium

  * SECURITY UPDATE: Memory corruption.
    - debian/patches/CVE-2025-8961.patch: Add _TIFFfree and extra read_buff
      check in tools/tiffcrop.c.
    - CVE-2025-8961
  * SECURITY UPDATE: Memory leak.
    - debian/patches/CVE-2025-9165.patch: Add TIFFClose in tools/tiffcmp.c.
    - CVE-2025-9165
  * SECURITY UPDATE: Out of bounds write when processing specially crafted
    TIFF files.
    - debian/patches/CVE-2025-9900.patch: Add img->height and img->width
      checks in libtiff/tif_getimage.c.
    - CVE-2025-9900

 -- Hlib Korzhynskyy <email address hidden>  Wed, 24 Sep 2025 15:26:31 -0230

Upload details

Uploaded by:
Hlib Korzhynskyy
Uploaded to:
Noble
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Noble updates main libs
Noble security main libs

Downloads

File Size SHA-256 Checksum
tiff_4.5.1+git230720.orig.tar.xz 1.7 MiB 0e51bcf3a3ffa5fc76ea6aeb74a797f95c84544fcc8b6a1ec5def967a78e9e12
tiff_4.5.1+git230720-4ubuntu2.4.debian.tar.xz 31.9 KiB 8defc71c2b6069b87fb3481c1adeae086791eadcd27f3968099abd576d60e498
tiff_4.5.1+git230720-4ubuntu2.4.dsc 2.4 KiB 9babe0644fd0ef25e551d77fab93af2bf3242591e61f35ef9733f39f1b3e08ba

View changes file

Binary packages built by this source

libtiff-dev: Tag Image File Format library (TIFF), development files

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 includes the development files, static library, and header files.

libtiff-doc: TIFF manipulation and conversion documentation

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 contains documentation.

libtiff-opengl: TIFF manipulation and conversion tools

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 contains libtiff tools that depend upon opengl. It complements the
 libtiff-tools package, which contains the libtiff tools that don't
 depend upon opengl.

libtiff-opengl-dbgsym: debug symbols for libtiff-opengl
libtiff-tools: TIFF manipulation and conversion tools

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 includes tools for converting TIFF images to and from other formats
 and tools for doing simple manipulations of TIFF images. See also
 libtiff-opengl.

libtiff-tools-dbgsym: debug symbols for libtiff-tools
libtiff5-dev: Tag Image File Format library (TIFF), development files (transitional package)

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 includes the development files, static library, and header files.
 .
 This is a transitional package. It can safely be removed.

libtiff6: Tag Image File Format (TIFF) library

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 includes the shared library.

libtiff6-dbgsym: debug symbols for libtiff6
libtiffxx6: Tag Image File Format (TIFF) library -- C++ interface

 libtiff is a library providing support for the Tag Image File Format
 (TIFF), a widely used format for storing image data. This package
 includes the shared library for the experimental C++ interfaces.

libtiffxx6-dbgsym: debug symbols for libtiffxx6