Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-42g8-vhhw-vw3f

Опубликовано: 01 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-763

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

CVSS3: 6.5
redhat
больше 3 лет назад

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

CVSS3: 6.5
nvd
больше 3 лет назад

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free operation in TIFFClose() at tif_close.c:131 called by tiffcrop.c:2522 that can cause a program crash and denial of service while processing crafted input.

CVSS3: 6.5
debian
больше 3 лет назад

It was found in libtiff 4.4.0rc1 that there is an invalid pointer free ...

CVSS3: 6.5
fstec
больше 3 лет назад

Уязвимость функции tiffclose() библиотеки libtiff , связанная с некорректной обработкой жестких ссылок, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-763