Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-5784

Опубликовано: 19 янв. 2018
Источник: ubuntu
Приоритет: low
CVSS2: 4.3
CVSS3: 6.5

Описание

In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.

РелизСтатусПримечание
artful

released

4.0.8-5ubuntu0.1
devel

not-affected

4.0.9-4
esm-infra-legacy/trusty

released

4.0.3-7ubuntu0.8
esm-infra/xenial

released

4.0.6-1ubuntu0.3
precise/esm

ignored

trusty

released

4.0.3-7ubuntu0.8
trusty/esm

released

4.0.3-7ubuntu0.8
upstream

released

4.0.9-4
xenial

released

4.0.6-1ubuntu0.3

Показывать по

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
около 8 лет назад

In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.

CVSS3: 6.5
nvd
около 8 лет назад

In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.

CVSS3: 6.5
debian
около 8 лет назад

In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the ...

CVSS3: 6.5
github
больше 3 лет назад

In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.

CVSS3: 6.5
fstec
около 8 лет назад

Уязвимость функции TIFFSetDirectory библиотеки LibTIFF, связанная с неконтролируемым расходом ресурса, позволяющая нарушителю вызвать отказ в обслуживании

4.3 Medium

CVSS2

6.5 Medium

CVSS3