Mandriva Linux Security Advisory : libtiff (MDVSA-2012:184)
Medium Nessus Plugin ID 63344
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionA vulnerability was found and corrected in libtiff :
A stack-based buffer overflow was found in the way libtiff handled DOTRANGE tags. An attacker could use this flaw to create a specially crafted TIFF file that, when opened, would cause an application linked against libtiff to crash or, possibly, execute arbitrary code (CVE-2012-5581).
The updated packages have been patched to correct this issue.
SolutionUpdate the affected packages.