Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r7x8-hv2q-v9r7

Опубликовано: 12 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.2

Описание

A null pointer dereference flaw was found in Libtiff via tif_dirinfo.c. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

A null pointer dereference flaw was found in Libtiff via tif_dirinfo.c. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

EPSS

Процентиль: 72%
0.00765
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-476
CWE-754

Связанные уязвимости

CVSS3: 7.5
ubuntu
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
redhat
11 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
nvd
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
msrc
10 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo. ...

EPSS

Процентиль: 72%
0.00765
Низкий

6.2 Medium

CVSS3

Дефекты

CWE-476
CWE-754