Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-4243

Опубликовано: 14 авг. 2013
Источник: redhat
CVSS2: 5.1
EPSS Средний

Описание

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7libtiffNot affected
Red Hat Enterprise Linux 5libtiffFixedRHSA-2014:022327.02.2014
Red Hat Enterprise Linux 6libtiffFixedRHSA-2014:022227.02.2014

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=996052(gif2tiff): possible heap-based buffer overflow in readgifimage()

EPSS

Процентиль: 95%
0.18626
Средний

5.1 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 12 лет назад

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.

nvd
почти 12 лет назад

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.

debian
почти 12 лет назад

Heap-based buffer overflow in the readgifimage function in the gif2tif ...

github
больше 3 лет назад

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.

oracle-oval
больше 11 лет назад

ELSA-2014-0223: libtiff security update (MODERATE)

EPSS

Процентиль: 95%
0.18626
Средний

5.1 Medium

CVSS2