Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-9534

Опубликовано: 24 сент. 2016
Источник: redhat
CVSS3: 7
CVSS2: 5.1
EPSS Низкий

Описание

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported as MSVR 35095, aka "TIFFFlushData1 heap-buffer-overflow."

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5libtiffWill not fix
Red Hat Enterprise Linux 7compat-libtiff3Will not fix
Red Hat Enterprise Linux 6libtiffFixedRHSA-2017:022501.02.2017
Red Hat Enterprise Linux 7libtiffFixedRHSA-2017:022501.02.2017

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1397751libtiff: TIFFFlushData1 heap-buffer-overflow

EPSS

Процентиль: 63%
0.00448
Низкий

7 High

CVSS3

5.1 Medium

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 9 лет назад

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported as MSVR 35095, aka "TIFFFlushData1 heap-buffer-overflow."

CVSS3: 9.8
nvd
около 9 лет назад

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported as MSVR 35095, aka "TIFFFlushData1 heap-buffer-overflow."

CVSS3: 9.8
debian
около 9 лет назад

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TI ...

CVSS3: 9.8
github
больше 3 лет назад

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported as MSVR 35095, aka "TIFFFlushData1 heap-buffer-overflow."

oracle-oval
около 9 лет назад

ELSA-2017-0225: libtiff security update (MODERATE)

EPSS

Процентиль: 63%
0.00448
Низкий

7 High

CVSS3

5.1 Medium

CVSS2