Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-5322

Опубликовано: 11 апр. 2017
Источник: debian
EPSS Низкий

Описание

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tifffixed4.0.7-1package
tiff3removedpackage

Примечания

  • src:tiff3: built binary packages do not contain the TIFF tools

  • http://bugzilla.maptools.org/show_bug.cgi?id=2560

  • Reproducer http://bugzilla.maptools.org/attachment.cgi?id=658

EPSS

Процентиль: 40%
0.0018
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 9 лет назад

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

redhat
больше 9 лет назад

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

CVSS3: 5.5
nvd
почти 9 лет назад

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

CVSS3: 5.5
github
больше 3 лет назад

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

EPSS

Процентиль: 40%
0.0018
Низкий