Описание
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
A vulnerability was found in LibTIFF, where the TIFFClientOpen function in tif_unix.c has a memory leak that could lead to a denial of service. A local attacker could exploit this flaw by tricking a user into opening a specially crafted file, resulting in increased memory usage and potential application crashes due to resource exhaustion.
Отчет
This vulnerability is rated as Moderate because a memory leak in the TIFFClientOpen function within tif_unix.c in LibTIFF could lead to a denial of service, a local attacker could cause excessive memory consumption.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | libtiff | Will not fix | ||
| Red Hat Enterprise Linux 6 | libtiff | Will not fix | ||
| Red Hat Enterprise Linux 7 | libtiff | Will not fix | ||
| Red Hat Enterprise Linux 8 | libtiff | Will not fix |
Показывать по
Дополнительная информация
Статус:
5.5 Medium
CVSS3
Связанные уязвимости
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as dem ...
TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.
5.5 Medium
CVSS3