summary refs log tree commit diff
path: root/gnu/packages/image.scm
diff options
context:
space:
mode:
authorLeo Famulari <leo@famulari.name>2017-01-23 02:06:40 -0500
committerLeo Famulari <leo@famulari.name>2017-01-23 02:13:38 -0500
commit62cf8fa7cd2126cce5f1ac37feeb3ca75db6f6bf (patch)
treec5bf2e9a6cdb41e32b1ad3dad7c8950e6c2910e1 /gnu/packages/image.scm
parentffcfaf2b18b2360abb4380bb9dec3f39051831cb (diff)
downloadguix-62cf8fa7cd2126cce5f1ac37feeb3ca75db6f6bf.tar.gz
gnu: libtiff: Fix CVE-2017-5225.
* gnu/packages/patches/libtiff-CVE-2017-5225.patch: New file.
* gnu/local.mk (dist_patch_DATA): Add it.
* gnu/packages/image.scm (libtiff/fixed)[source]: Use it.
Diffstat (limited to 'gnu/packages/image.scm')
-rw-r--r--gnu/packages/image.scm3
1 files changed, 2 insertions, 1 deletions
diff --git a/gnu/packages/image.scm b/gnu/packages/image.scm
index a9bbf192cc..637819947c 100644
--- a/gnu/packages/image.scm
+++ b/gnu/packages/image.scm
@@ -312,7 +312,8 @@ collection of tools for doing simple manipulations of TIFF images.")
                                  "libtiff-CVE-2016-10093.patch"
                                  "libtiff-divide-by-zero-tiffcp.patch"
                                  "libtiff-assertion-failure.patch"
-                                 "libtiff-CVE-2016-10094.patch"))))))
+                                 "libtiff-CVE-2016-10094.patch"
+                                 "libtiff-CVE-2017-5225.patch"))))))
 
 (define-public libwmf
   (package