Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-2327

Опубликовано: 26 авг. 2008
Источник: redhat
EPSS Низкий

Описание

Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code.

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=458674libtiff: use of uninitialized memory in LZW decoder

EPSS

Процентиль: 90%
0.0413
Низкий

Связанные уязвимости

ubuntu
почти 18 лет назад

Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code.

nvd
почти 18 лет назад

Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code.

debian
почти 18 лет назад

Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, ...

github
около 4 лет назад

Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code.

oracle-oval
почти 18 лет назад

ELSA-2008-0847: libtiff security and bug fix update (IMPORTANT)

EPSS

Процентиль: 90%
0.0413
Низкий