Описание
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 4.0.3-12.3ubuntu1 |
| esm-infra-legacy/trusty | released | 4.0.3-7ubuntu0.2 |
| lucid | released | 3.9.2-2ubuntu0.15 |
| precise | released | 3.9.5-2ubuntu1.7 |
| trusty | released | 4.0.3-7ubuntu0.2 |
| trusty/esm | released | 4.0.3-7ubuntu0.2 |
| upstream | needs-triage | |
| utopic | released | 4.0.3-10ubuntu0.1 |
Показывать по
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (ou ...
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
EPSS
6.8 Medium
CVSS2
8.8 High
CVSS3