Show filters
34 Total Results
Displaying 11-20 of 34
Sort by:
Attacker Value
Unknown

CVE-2012-4447

Disclosure Date: October 28, 2012 (last updated October 05, 2023)
Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF image using the PixarLog Compression format.
0
Attacker Value
Unknown

CVE-2012-3401

Disclosure Date: August 13, 2012 (last updated October 04, 2023)
The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct pointer in certain error conditions, which allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2012-2088

Disclosure Date: July 22, 2012 (last updated October 04, 2023)
Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a negative tile depth in a tiff image, which triggers an improper conversion between signed and unsigned types, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2012-2113

Disclosure Date: July 22, 2012 (last updated October 04, 2023)
Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2010-4665

Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Integer overflow in the ReadDirectory function in tiffdump.c in tiffdump in LibTIFF before 3.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted TIFF file containing a directory data structure with many directory entries.
0
Attacker Value
Unknown

CVE-2009-5022

Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execute arbitrary code via a crafted TIFF file.
0
Attacker Value
Unknown

CVE-2011-1167

Disclosure Date: March 28, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the thunder (aka ThunderScan) decoder in tif_thunder.c in LibTIFF 3.9.4 and earlier allows remote attackers to execute arbitrary code via crafted THUNDER_2BITDELTAS data in a .tiff file that has an unexpected BitsPerSample value.
0
Attacker Value
Unknown

CVE-2010-2481

Disclosure Date: July 06, 2010 (last updated October 04, 2023)
The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF file.
0
Attacker Value
Unknown

CVE-2010-2482

Disclosure Date: July 06, 2010 (last updated October 04, 2023)
LibTIFF 3.9.4 and earlier does not properly handle an invalid td_stripbytecount field, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted TIFF file, a different vulnerability than CVE-2010-2443.
0
Attacker Value
Unknown

CVE-2010-2443

Disclosure Date: June 24, 2010 (last updated October 04, 2023)
The OJPEGReadBufferFill function in tif_ojpeg.c in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an OJPEG image with undefined strip offsets, related to the TIFFVGetField function.
0