New issue
Advanced search Search tips

Issue 671014 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner:
Closed: May 2017
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: ----
Type: Bug-Security

Blocking:
issue 62400



Sign in to add a comment

Security: multiple crashes in upstream libtiff-4.0.7

Reported by agostino...@gmail.com, Dec 4 2016

Issue description

Blocking: 62400
Components: Internals>Plugins>PDF
Labels: Security_Impact-None
Owner: dsinclair@chromium.org
Status: Assigned (was: Unconfirmed)
Thanks for the report. XFA is still disabled by default (set this bug to block the main XFA bug).
Cc: dsinclair@chromium.org
Owner: npm@chromium.org

Comment 3 by npm@chromium.org, May 18 2017

Status: WontFix (was: Assigned)
Up until 2599, all of the bugs are fixed/not applicable. The others seem like a typo, did you mean 2604 instead of 2504 etc? Anyways, we currently have libtiff disabled and will probably have it disabled for a while. So I think having them fixed upstream and getting the fixes from upstream when we update our version (currently 4.0.7) is good enough. Thank you for your work in libtiff security!
Project Member

Comment 4 by sheriffbot@chromium.org, Aug 25 2017

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment