Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-3625

Опубликовано: 03 окт. 2016
Источник: debian

Описание

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tifffixed4.0.3-1package
tiffnot-affectedwheezypackage
tiff3removedpackage
tiff3not-affectedwheezypackage

Примечания

  • http://bugzilla.maptools.org/show_bug.cgi?id=2566

  • Not reproducible with jessie and above, marking the version in jessie as fixed

  • CVE probably should/needs to be rejected, since upstream is as well unable to

  • reproduce the issue. Might have been a problem on reporter from id=2566

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 9 лет назад

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.

redhat
почти 10 лет назад

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.

CVSS3: 6.5
nvd
больше 9 лет назад

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.

CVSS3: 6.5
github
больше 3 лет назад

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.

fstec
больше 9 лет назад

Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании