Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-8914

Опубликовано: 05 нояб. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-8914: libtiff security update (MODERATE)

[4.4.0-12.1]

  • fix CVE-2024-7006 a null pointer dereference in tif_dirinfo (RHEL-52931)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libtiff

4.4.0-12.el9_4.1

libtiff-devel

4.4.0-12.el9_4.1

libtiff-tools

4.4.0-12.el9_4.1

Oracle Linux x86_64

libtiff

4.4.0-12.el9_4.1

libtiff-devel

4.4.0-12.el9_4.1

libtiff-tools

4.4.0-12.el9_4.1

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
redhat
11 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
nvd
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an application crash, eventually leading to a denial of service.

CVSS3: 7.5
msrc
10 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
10 месяцев назад

A null pointer dereference flaw was found in Libtiff via `tif_dirinfo. ...