Changelog for
tiff-4.3.0-3.1.i586.rpm :
* Mon Apr 26 2021 Paolo Stivanin
- version update to 4.3.0
* Build and usage of the library and its utilities requires a C99 capable compiler.
* New optional codec for the LERC (Limited Error Raster Compression) compression scheme. To have it available, configure libtiff against the SDK available at https://github.com/esri/lerc
* Removal of unused, or now useless due to C99 availability, functions in port/
* tiffcmp: fix comparaison with pixels that are fractional number of bytes
* tiff2ps: exit the loop in case of error
* tiff2pdf: check that tiff_datasize fits in a signed tsize_t
* Mon Dec 28 2020 pgajdosAATTsuse.com- version update to 4.2.0 Major changes:
* Optional support for using libdeflate is added.
* Many of the tools now support a memory usage limit. See http://www.simplesystems.org/libtiff/v4.2.0.html for more.
* Wed Apr 01 2020 Martin Pluskal - Drop webp support as it would introduce build cycle
* Mon Mar 30 2020 Martin Pluskal - Enable zstd and webp support
* Wed Nov 06 2019 pgajdosAATTsuse.com- version update to 4.1.0
* fixes several CVEs mentioned below and more, see ChangeLog- deleted patches - tiff-CVE-2018-12900.patch (upstreamed) - tiff-CVE-2018-17000,19210.patch (upstreamed) - tiff-CVE-2019-6128.patch (upstreamed) - tiff-CVE-2019-7663.patch (upstreamed)
* Tue Feb 12 2019 mvetterAATTsuse.com- security update
* CVE-2019-7663 [bsc#1125113] + tiff-CVE-2019-7663.patch
* Mon Feb 04 2019 mvetterAATTsuse.com- security update
* CVE-2019-6128 [bsc#1121626] + tiff-CVE-2019-6128.patch
* Wed Jan 30 2019 Petr Gajdos - extend tiff-CVE-2018-19210.patch and rename it to tiff-CVE-2018-17000,19210.patch [bsc#1108606c#11]
* solves CVE-2018-19210 [bsc#1115717] and CVE-2018-17000 [bsc#1108606]
* Wed Jan 30 2019 Petr Gajdos - amend tiff-CVE-2018-12900.patch: fix wrong error message [bsc#1099257]
* Mon Nov 19 2018 Petr Gajdos - security update
* CVE-2018-19210 [bsc#1115717] + tiff-CVE-2018-19210.patch
* Tue Nov 13 2018 Tomáš Chvátal - Support only SLE12+ and remove the no longer needed conditions
* Tue Nov 13 2018 Petr Gajdos - security update
* CVE-2018-12900 [bsc#1099257] + tiff-CVE-2018-12900.patch
* Mon Nov 12 2018 Petr Gajdos - upddated to 4.0.10:
* fixes several CVEs mentioned below plus CVE-2018-18557 and CVE-2018-18661 and more- removed patches
* tiff-CVE-2017-11613,CVE-2018-16335,15209.patch
* tiff-CVE-2017-18013.patch
* tiff-CVE-2017-9935,CVE-2018-17795.patch
* tiff-CVE-2018-10779.patch
* tiff-CVE-2018-10963.patch
* tiff-CVE-2018-17100.patch
* tiff-CVE-2018-17101.patch
* tiff-CVE-2018-7456.patch
* tiff-CVE-2018-8905.patch
* tiff-4.0.9-bsc1081690-CVE-2018-5784.patch
* Fri Oct 19 2018 Petr Gajdos - security update
* CVE-2018-17795 [bsc#1110358] % tiff-4.0.9-bsc1046077-CVE-2017-9935.patch renamed to tiff-CVE-2017-9935,CVE-2018-17795.patch
* CVE-2018-16335 [bsc#1106853] % tiff-CVE-2017-11613.patch renamed to tiff-CVE-2017-11613,CVE-2018-16335,15209.patch- add a possibility to build with ASAN
* Wed Oct 17 2018 Petr Gajdos - security update
* CVE-2018-17100 [bsc#1108637] + tiff-CVE-2018-17100.patch
* CVE-2018-17101 [bsc#1108627] + tiff-CVE-2018-17101.patch
* Fri Aug 24 2018 pgajdosAATTsuse.com- remove pal2rgb tool [bsc#1071031]
* Wed Aug 15 2018 pgajdosAATTsuse.com- security update
* CVE-2018-10779 [bsc#1092480] + tiff-CVE-2018-10779.patch
* Tue Jun 05 2018 pgajdosAATTsuse.com- security update
* CVE-2018-8905 [bsc#1086408] + tiff-CVE-2018-8905.patch
* Mon Jun 04 2018 pgajdosAATTsuse.com- security update
* CVE-2017-11613 [bsc#1082332] + tiff-CVE-2017-11613.patch
* Mon Jun 04 2018 pgajdosAATTsuse.com- security update
* CVE-2018-7456 [bsc#1082825] + tiff-CVE-2018-7456.patch
* Fri May 18 2018 pgajdosAATTsuse.com- security update
* CVE-2017-18013 [bsc#1074317] + tiff-CVE-2017-18013.patch
* Tue May 15 2018 pgajdosAATTsuse.com- security update
* CVE-2018-10963 [bsc#1092949] + tiff-CVE-2018-10963.patch
* Tue Feb 20 2018 mvetterAATTsuse.com- bsc#1081690: Add tiff-4.0.9-bsc1081690-CVE-2018-5784.patch Fix uncontrolled resource consumption in TIFFSetDirectory
* Fri Feb 16 2018 mvetterAATTsuse.com- bsc#1046077: Add tiff-4.0.9-bsc1046077-CVE-2017-9935.patch Fix Heap-based buffer overflow in t2p_write_pdf