Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-9147

Опубликовано: 22 мая 2017
Источник: nvd
CVSS3: 6.5
CVSS2: 4.3
EPSS Низкий

Описание

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:libtiff:libtiff:4.0.7:*:*:*:*:*:*:*

EPSS

Процентиль: 88%
0.03787
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 9 лет назад

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.

CVSS3: 3.3
redhat
почти 9 лет назад

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.

CVSS3: 6.5
debian
почти 9 лет назад

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in ti ...

CVSS3: 6.5
github
почти 4 года назад

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.

suse-cvrf
больше 7 лет назад

Security update for tiff

EPSS

Процентиль: 88%
0.03787
Низкий

6.5 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-125