Gentoo Linux Security Advisory 201209-2 - Multiple vulnerabilities in libTIFF could result in execution of arbitrary code or Denial of Service. Versions less than 4.0.2-r1 are affected.
4c1d531cd4481a5572a3c053df88570eab2536699dd069f5b711c89773f211c5
Debian Linux Security Advisory 2256-1 - Tavis Ormandy discovered that the Tag Image File Format (TIFF) library is vulnerable to a buffer overflow triggered by a crafted OJPEG file which allows for a crash and potentially execution of arbitrary code.
e1600c5d082ac38cf6e93ff939d309cdc92b47dab49ce83a8355639ef56428cd
Mandriva Linux Security Advisory 2011-078 - The libtiff OJPEG decoder contains a heap buffer overflow when decoding certain malformed data. The updated packages have been patched to correct this issue.
e6210332ba17e9cdae458081c53340ddfd8055e6279d57841904f56076d7368d
Ubuntu Security Notice 1120-1 - It was discovered that the TIFF library incorrectly handled certain JPEG data. If a user or automated system were tricked into opening a specially crafted TIFF image, a remote attacker could execute arbitrary code with user privileges, or crash the application, leading to a denial of service.
b07452b15b9bd47493da17c9b8107457a4deb3f3a8e3b4b9d2b8af8f82198122