Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-0561

Опубликовано: 11 фев. 2022
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.

РелизСтатусПримечание
bionic

released

4.0.9-5ubuntu0.5
devel

not-affected

4.3.0-4
esm-infra-legacy/trusty

released

4.0.3-7ubuntu0.11+esm1
esm-infra/bionic

released

4.0.9-5ubuntu0.5
esm-infra/focal

released

4.1.0+git191117-2ubuntu0.20.04.3
esm-infra/xenial

released

4.0.6-1ubuntu0.8+esm1
focal

released

4.1.0+git191117-2ubuntu0.20.04.3
impish

released

4.3.0-1ubuntu0.1
jammy

not-affected

4.3.0-4
trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 28%
0.00101
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
почти 4 года назад

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.

CVSS3: 5.5
nvd
почти 4 года назад

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.

CVSS3: 5.5
msrc
почти 4 года назад

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources the fix is available with commit eecb0712.

CVSS3: 5.5
debian
почти 4 года назад

Null source pointer passed as an argument to memcpy() function within ...

CVSS3: 5.5
github
почти 4 года назад

Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing() in tif_dirread.c in libtiff versions from 3.9.0 to 4.3.0 could lead to Denial of Service via crafted TIFF file. For users that compile libtiff from sources, the fix is available with commit eecb0712.

EPSS

Процентиль: 28%
0.00101
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3