Skip to content

1.43.0

Compare
Choose a tag to compare
@cf-buildpacks-eng cf-buildpacks-eng released this 11 Oct 06:57
· 174 commits to main since this release

Notably, this release addresses:

USN-6428-1 USN-6428-1: LibTIFF vulnerability:

  • CVE-2023-1916: A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited information disclosure. This issue affects libtiff versions 4.x.
-ii  libtiff-dev:amd64 4.3.0-6ubuntu0.5  amd64  Tag Image File Format library (TIFF), development files
-ii  libtiff5:amd64    4.3.0-6ubuntu0.5  amd64  Tag Image File Format (TIFF) library
-ii  libtiffxx5:amd64  4.3.0-6ubuntu0.5  amd64  Tag Image File Format (TIFF) library -- C++ interface
+ii  libtiff-dev:amd64 4.3.0-6ubuntu0.6  amd64  Tag Image File Format library (TIFF), development files
+ii  libtiff5:amd64    4.3.0-6ubuntu0.6  amd64  Tag Image File Format (TIFF) library
+ii  libtiffxx5:amd64  4.3.0-6ubuntu0.6  amd64  Tag Image File Format (TIFF) library -- C++ interface