Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4231

Опубликовано: 19 янв. 2014
Источник: ubuntu
Приоритет: low
EPSS Средний
CVSS2: 4.3

Описание

Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF image to tools/rgb2ycbcr.c. NOTE: vectors 1 and 3 are disputed by Red Hat, which states that the input cannot exceed the allocated buffer size.

РелизСтатусПримечание
devel

not-affected

4.0.3-5ubuntu1
esm-infra-legacy/trusty

not-affected

4.0.3-5ubuntu1
lucid

released

3.9.2-2ubuntu0.14
precise

released

3.9.5-2ubuntu1.6
quantal

released

4.0.2-1ubuntu2.3
raring

ignored

end of life
saucy

released

4.0.2-4ubuntu3.1
trusty

not-affected

4.0.3-5ubuntu1
trusty/esm

not-affected

4.0.3-5ubuntu1
upstream

released

4.0.3-2

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

DNE

precise

DNE

quantal

not-affected

raring

not-affected

saucy

not-affected

trusty

DNE

trusty/esm

DNE

upstream

not-affected

Показывать по

EPSS

Процентиль: 95%
0.2141
Средний

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF image to tools/rgb2ycbcr.c. NOTE: vectors 1 and 3 are disputed by Red Hat, which states that the input cannot exceed the allocated buffer size.

nvd
больше 11 лет назад

Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF image to tools/rgb2ycbcr.c. NOTE: vectors 1 and 3 are disputed by Red Hat, which states that the input cannot exceed the allocated buffer size.

debian
больше 11 лет назад

Multiple buffer overflows in libtiff before 4.0.3 allow remote attacke ...

github
больше 3 лет назад

Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF image to tools/rgb2ycbcr.c. NOTE: vectors 1 and 3 are disputed by Red Hat, which states that the input cannot exceed the allocated buffer size.

oracle-oval
больше 11 лет назад

ELSA-2014-0223: libtiff security update (MODERATE)

EPSS

Процентиль: 95%
0.2141
Средний

4.3 Medium

CVSS2