Errata overview
Errata ID 607
Date 2019-02-27
Source package tiff
Fixed in version 4.0.3-12.3+deb8u8
Description
This update addresses the following issues:
* NULL pointer dereference in function _TIFFmemcmp at tif_unix.c
  (CVE-2018-17000)
* NULL pointer dereference in TIFFWriteDirectorySec function in
  tif_dirwrite.c (CVE-2018-19210)
* integer overflow in libtiff/tif_dirwrite.c resulting in an invalid pointer
  dereference (CVE-2019-7663)
Additional notes
CVE ID CVE-2018-17000
CVE-2018-19210
CVE-2019-7663
UCS Bug number #48760