Описание
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | libtiff | Will not fix | ||
| Red Hat Enterprise Linux 7 | compat-libtiff3 | Will not fix | ||
| Red Hat Enterprise Linux 6 | libtiff | Fixed | RHSA-2017:0225 | 01.02.2017 |
| Red Hat Enterprise Linux 7 | libtiff | Fixed | RHSA-2017:0225 | 01.02.2017 |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=1397760libtiff: Out-of-bounds write vulnerabilities in tools/tiffcrop.c
EPSS
Процентиль: 61%
0.00416
Низкий
7 High
CVSS3
5.1 Medium
CVSS2
Связанные уязвимости
CVSS3: 9.8
ubuntu
почти 9 лет назад
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.
CVSS3: 9.8
nvd
почти 9 лет назад
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.
CVSS3: 9.8
debian
почти 9 лет назад
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilit ...
CVSS3: 9.8
github
больше 3 лет назад
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.
EPSS
Процентиль: 61%
0.00416
Низкий
7 High
CVSS3
5.1 Medium
CVSS2