1
PublicDateAtUSN: 2016-06-15
2
Candidate: CVE-2016-5320
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5320
6
http://seclists.org/oss-sec/2016/q2/551
7
https://usn.ubuntu.com/usn/usn-3212-1
9
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-5314.
10
Reason: This candidate is a reservation duplicate of CVE-2016-5314.
11
Notes: All CVE users should reference CVE-2016-5314 instead of this
12
candidate. All references and descriptions in this candidate have been
13
removed to prevent accidental usage.
16
mdeslaur> possible dupe and same patch as CVE-2016-5314
19
Discovered-by: Kaixiang Zhang
23
vendor: https://git.centos.org/blob/rpms!libtiff.git/1ad9335dc0c1325262c62842eda01476243ec821/SOURCES!libtiff-CVE-2016-5320.patch
24
upstream: https://github.com/vadz/libtiff/commit/391e77fcd217e78b2c51342ac3ddb7100ecacdd2
25
upstream_tiff: released (4.0.7)
26
precise_tiff: ignored (reached end-of-life)
27
precise/esm_tiff: needed
28
trusty_tiff: released (4.0.3-7ubuntu0.6)
29
vivid/stable-phone-overlay_tiff: ignored (reached end-of-life)
30
vivid/ubuntu-core_tiff: DNE
31
wily_tiff: ignored (reached end-of-life)
32
xenial_tiff: released (4.0.6-1ubuntu0.1)
33
yakkety_tiff: not-affected (4.0.6-2)
34
zesty_tiff: not-affected (4.0.7-1)
35
artful_tiff: not-affected (4.0.7-1)
36
devel_tiff: not-affected (4.0.7-1)