HOWTO-SECURITY-RELEASE 816 B

12345678910111213141516171819
  1. LibTIFF Security Issue Handling
  2. ===============================
  3. Libtiff can be a significant security risk as many tools use it to read
  4. TIFF files which can come from hostile sources. Thus buffer overflows
  5. and other security holes in libtiff put many users at risk. To that end
  6. we try to deal with security problems fairly quickly and to provide advance
  7. notice to various interested parties to role out security fixes before they
  8. go out in a standard release.
  9. This document is new and will presumably evolve.
  10. 1) The mailing list distros@vs.openwall.org can be used to notify folks
  11. at various linux OS distributions as well as the BSD folks about problems
  12. in libtiff. Make sure to prefix subject with [vs]. More info at:
  13. http://oss-security.openwall.org/wiki/mailing-lists/distros
  14. ... to be continued ...