Описание
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 4.0.7-1 |
| devel | not-affected | 4.0.7-1 |
| esm-infra-legacy/trusty | ignored | |
| esm-infra/xenial | ignored | |
| precise | ignored | end of life |
| precise/esm | ignored | |
| trusty | ignored | |
| trusty/esm | ignored | |
| upstream | released | 4.0.6-3 |
| vivid/stable-phone-overlay | ignored | end of life |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4. ...
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
EPSS
5 Medium
CVSS2
7.5 High
CVSS3