Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-3164

Опубликовано: 02 нояб. 2023
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 5.5

Описание

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

released

4.5.1+git230720-4ubuntu3
esm-infra-legacy/trusty

released

4.0.3-7ubuntu0.11+esm13
esm-infra/bionic

released

4.0.9-5ubuntu0.10+esm6
esm-infra/focal

released

4.1.0+git191117-2ubuntu0.20.04.13
esm-infra/xenial

released

4.0.6-1ubuntu0.8+esm16
focal

released

4.1.0+git191117-2ubuntu0.20.04.13
jammy

released

4.3.0-6ubuntu0.9
kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was deferred

Показывать по

EPSS

Процентиль: 1%
0.0001
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
больше 2 лет назад

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.

CVSS3: 5.5
nvd
около 2 лет назад

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.

CVSS3: 5.5
msrc
10 месяцев назад

Описание отсутствует

CVSS3: 5.5
debian
около 2 лет назад

A heap-buffer-overflow vulnerability was found in LibTIFF, in extractI ...

suse-cvrf
больше 1 года назад

Security update for tiff

EPSS

Процентиль: 1%
0.0001
Низкий

5.5 Medium

CVSS3