Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-17000

Опубликовано: 13 сент. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.5

Описание

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered by the executable tiffcp.

РелизСтатусПримечание
bionic

released

4.0.9-5ubuntu0.2
cosmic

released

4.0.9-6ubuntu0.2
devel

not-affected

4.0.10-4
esm-infra-legacy/trusty

released

4.0.3-7ubuntu0.11
esm-infra/bionic

released

4.0.9-5ubuntu0.2
esm-infra/xenial

released

4.0.6-1ubuntu0.6
precise/esm

not-affected

code not present
trusty

released

4.0.3-7ubuntu0.11
trusty/esm

released

4.0.3-7ubuntu0.11
upstream

released

4.0.10-4

Показывать по

EPSS

Процентиль: 79%
0.01208
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
redhat
больше 7 лет назад

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered by the executable tiffcp.

CVSS3: 6.5
nvd
больше 7 лет назад

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered by the executable tiffcp.

CVSS3: 6.5
debian
больше 7 лет назад

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c ( ...

CVSS3: 6.5
github
больше 3 лет назад

A NULL pointer dereference in the function _TIFFmemcmp at tif_unix.c (called from TIFFWriteDirectoryTagTransferfunction) in LibTIFF 4.0.9 allows an attacker to cause a denial-of-service through a crafted tiff file. This vulnerability can be triggered by the executable tiffcp.

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость функции _TIFFmemcmp библиотеки LibTIFF операционных систем Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 79%
0.01208
Низкий

4.3 Medium

CVSS2

6.5 Medium

CVSS3