xref: /libtiff-4.0.7/HOWTO-SECURITY-RELEASE (revision 7017b048)
1LibTIFF Security Issue Handling
2===============================
3
4Libtiff can be a significant security risk as many tools use it to read
5TIFF files which can come from hostile sources.  Thus buffer overflows
6and other security holes in libtiff put many users at risk.  To that end
7we try to deal with security problems fairly quickly and to provide advance
8notice to various interested parties to role out security fixes before they
9go out in a standard release.
10
11This document is new and will presumably evolve.
12
131) The mailing list [email protected] can be used to notify folks
14at various linux OS distributions as well as the BSD folks about problems
15in libtiff.  Make sure to prefix subject with [vs].  More info at:
16
17  http://oss-security.openwall.org/wiki/mailing-lists/distros
18
19... to be continued ...
20