Описание
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | ignored | end of standard support |
| devel | released | 4.5.1+git230720-4ubuntu3 |
| esm-infra-legacy/trusty | released | 4.0.3-7ubuntu0.11+esm13 |
| esm-infra/bionic | released | 4.0.9-5ubuntu0.10+esm6 |
| esm-infra/focal | released | 4.1.0+git191117-2ubuntu0.20.04.13 |
| esm-infra/xenial | released | 4.0.6-1ubuntu0.8+esm16 |
| focal | released | 4.1.0+git191117-2ubuntu0.20.04.13 |
| jammy | released | 4.3.0-6ubuntu0.9 |
| kinetic | ignored | end of life, was needs-triage |
| lunar | ignored | end of life, was deferred |
Показывать по
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractI ...
EPSS
5.5 Medium
CVSS3