Commit Graph

17 Commits

Author SHA1 Message Date
RHEL Packaging Agent
33d4233efd Fix CVE-2025-8176: off-by-one error in tiffdither and tiffmedian
Backport upstream fix for CVE-2025-8176 to prevent skipping the first
line of input images in tiffdither and tiffmedian tools. The patch
corrects loop initialization and scanline writing parameters to ensure
all image lines are processed correctly.

CVE: CVE-2025-8176
Upstream fix: fe10872e53.patch
Resolves: RHEL-120230

This commit was backported by Jotnar, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Jotnar
2025-11-03 08:46:29 +00:00
RHEL Packaging Agent
321421fc81 Fix CVE-2025-9900: buffer underflow in TIFFReadRGBAImageOriented()
Backported upstream patch to fix buffer underflow crash in
TIFFReadRGBAImageOriented() when handling images with fewer raster
rows than requested. The patch adds verification logic to check
raster dimensions against image dimensions and adjusts accordingly.

Manual conflict resolution was required for libtiff 4.0.9
compatibility, replacing TIFFWarningExtR() with TIFFWarningExt()
to match the function signature available in this version.

CVE: CVE-2025-9900
Upstream fix: d1c0719e00.patch
Resolves: RHEL-112533

This commit was backported by Jotnar, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Jotnar
2025-10-14 14:18:20 +00:00
Michal Hlavinka
a1e03d6f7a fix CVE-2017-17095: heap-based buffer overflow in pal2rgb (RHEL-87363)
Resolves: RHEL-87363
2025-04-22 23:08:05 +02:00
Michal Hlavinka
21cdd75b44 fix CVE-2024-7006 a null pointer dereference in tif_dirinfo (RHEL-52927)
Resolves: RHEL-52927
2024-08-29 23:49:28 +02:00
Matej Mužila
44e09a0bb8 Fix CVE-2023-6228 CVE-2023-52356 CVE-2023-25433 CVE-2018-15209
Resolves: RHEL-30682 RHEL-30520 RHEL-30474 RHEL-5406
2024-05-16 16:31:19 +02:00
Matej Mužila
98694b10b2 Fix CVE-2022-3599 CVE-2022-4645
Resolves: RHEL-5399
2024-01-09 14:34:59 +01:00
Ondřej Sloup
9cab330a72 Bump specfile to retrigger gating
Needed for new build with tests folder for standard beakerlib
Related: RHEL-4683 RHEL-4685 RHEL-4686 RHEL-4687 RHEL-4688
2023-09-21 15:03:00 +02:00
Ondřej Sloup
afab5f6d40 Add tests folder for standard beakerlib
Related: RHEL-4683 RHEL-4685 RHEL-4686 RHEL-4687 RHEL-4688
2023-09-21 14:04:18 +02:00
Ondřej Sloup
92148c783d Fix CVE-2023-0800 CVE-2023-0801 CVE-2023-0802 CVE-2023-0803 CVE-2023-0804
Resolves: RHEL-4683 RHEL-4685 RHEL-4686 RHEL-4687 RHEL-4688
Co-authored-by: Matej Muzila <mmuzila@redhat.com>
2023-09-21 11:08:24 +02:00
Matej Mužila
3fb83b8c99 Fix CVE-2022-48281
Resolves: CVE-2022-48281
2023-05-16 14:38:20 +02:00
Troy Dawson
efa531dac8 Bring gating.yaml over from Brew dist-git
Signed-off-by: Troy Dawson <tdawson@redhat.com>
2023-03-10 10:57:31 -08:00
James Antill
1a58d818b4 Import rpm: c8s 2023-02-27 14:12:19 -05:00
CentOS Sources
c4739aff6c Auto sync2gitlab import of libtiff-4.0.9-27.el8.src.rpm 2023-01-27 02:12:15 +00:00
CentOS Sources
174b09729e Auto sync2gitlab import of libtiff-4.0.9-26.el8_7.src.rpm 2022-11-11 04:13:37 +00:00
CentOS Sources
4dd7658732 Auto sync2gitlab import of libtiff-4.0.9-23.el8.src.rpm 2022-06-16 05:07:26 +00:00
James Antill
cdaa44c4b3 Auto sync2gitlab import of libtiff-4.0.9-21.el8.src.rpm 2022-05-26 10:57:59 -04:00
James Antill
30a64345a4 Initial c8s branch. 2022-05-26 10:57:54 -04:00