[CLSA-2026:1786702659] libtiff: Fix of 2 CVEs
Type:
security
Severity:
None
Release date:
2026-08-14 10:17:47 UTC
Description:
- rebase to 4.0.3-35.amzn2.0.31; take AL2's CVE-2026-12912 fix - complete CVE-2026-12912: add upstream multi-row ABGR bounds-check follow-up (f9bda11b + 90601d9a) that AL2's patch omits - carry CVE-2023-52355
Updated packages:
  • libtiff-4.0.3-35.amzn2.0.31.tuxcare.els1.i686.rpm
    sha:b2ccf2a2ee5ae76eeed1fd2bf5124aae9bfeb46d13e6af713f3d2c4648d4bd65
  • libtiff-4.0.3-35.amzn2.0.31.tuxcare.els1.x86_64.rpm
    sha:bf23e2657fda4e229650ddba285744441c0ba7a3439a6488ab3df3e3fab13b1e
  • libtiff-devel-4.0.3-35.amzn2.0.31.tuxcare.els1.x86_64.rpm
    sha:99e3ccfb83d15678437ae4d39c873b8f4b4f972d2712deb572363f48797be6b4
  • libtiff-static-4.0.3-35.amzn2.0.31.tuxcare.els1.x86_64.rpm
    sha:3ee1e9a23efe5a48c05bb84f910c03c9ef9bc66beb7a8305cea1cf6af6212387
  • libtiff-tools-4.0.3-35.amzn2.0.31.tuxcare.els1.x86_64.rpm
    sha:568233be149a40b5f837036282612035f070bc21d37ae503f53c1ca5ba9fb040
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.