Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-8668

Опубликовано: 28 дек. 2015
Источник: redhat
CVSS3: 3.3
CVSS2: 4.3
EPSS Низкий

Описание

Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libtiffAffected
Red Hat Enterprise Linux 6libtiffFixedRHSA-2016:154702.08.2016
Red Hat Enterprise Linux 7libtiffFixedRHSA-2016:154602.08.2016

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-122

EPSS

Процентиль: 91%
0.07397
Низкий

3.3 Low

CVSS3

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 9 лет назад

Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.

CVSS3: 9.8
nvd
больше 9 лет назад

Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.

CVSS3: 9.8
debian
больше 9 лет назад

Heap-based buffer overflow in the PackBitsPreEncode function in tif_pa ...

CVSS3: 9.8
github
больше 3 лет назад

Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.

suse-cvrf
больше 1 года назад

Security update for tiff

EPSS

Процентиль: 91%
0.07397
Низкий

3.3 Low

CVSS3

4.3 Medium

CVSS2