Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-6277

Опубликовано: 24 нояб. 2023
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 6.5

Описание

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

4.5.1+git230720-3ubuntu1
esm-infra-legacy/trusty

not-affected

4.0.3-7ubuntu0.11+esm12
esm-infra/bionic

released

4.0.9-5ubuntu0.10+esm5
esm-infra/focal

not-affected

4.1.0+git191117-2ubuntu0.20.04.12
esm-infra/xenial

released

4.0.6-1ubuntu0.8+esm15
focal

released

4.1.0+git191117-2ubuntu0.20.04.12
jammy

released

4.3.0-6ubuntu0.8
lunar

ignored

end of life, was needed
mantic

released

4.5.1+git230720-1ubuntu1.1

Показывать по

EPSS

Процентиль: 61%
0.00418
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 1 года назад

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.

CVSS3: 6.5
nvd
больше 1 года назад

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.

CVSS3: 6.5
msrc
7 месяцев назад

Описание отсутствует

CVSS3: 6.5
debian
больше 1 года назад

An out-of-memory flaw was found in libtiff. Passing a crafted tiff fil ...

CVSS3: 7.5
github
больше 1 года назад

An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.

EPSS

Процентиль: 61%
0.00418
Низкий

6.5 Medium

CVSS3