Show filters
30 Total Results
Displaying 11-20 of 30
Sort by:
Attacker Value
Unknown
CVE-2009-5022
Disclosure Date: May 03, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execute arbitrary code via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2011-1167
Disclosure Date: March 28, 2011 (last updated October 04, 2023)
Heap-based buffer overflow in the thunder (aka ThunderScan) decoder in tif_thunder.c in LibTIFF 3.9.4 and earlier allows remote attackers to execute arbitrary code via crafted THUNDER_2BITDELTAS data in a .tiff file that has an unexpected BitsPerSample value.
0
Attacker Value
Unknown
CVE-2010-2481
Disclosure Date: July 06, 2010 (last updated October 04, 2023)
The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2010-2482
Disclosure Date: July 06, 2010 (last updated October 04, 2023)
LibTIFF 3.9.4 and earlier does not properly handle an invalid td_stripbytecount field, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted TIFF file, a different vulnerability than CVE-2010-2443.
0
Attacker Value
Unknown
CVE-2010-2443
Disclosure Date: June 24, 2010 (last updated October 04, 2023)
The OJPEGReadBufferFill function in tif_ojpeg.c in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an OJPEG image with undefined strip offsets, related to the TIFFVGetField function.
0
Attacker Value
Unknown
CVE-2010-2065
Disclosure Date: June 24, 2010 (last updated October 04, 2023)
Integer overflow in the TIFFroundup macro in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TIFF file that triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2008-2327
Disclosure Date: August 27, 2008 (last updated October 04, 2023)
Multiple buffer underflows in the (1) LZWDecode, (2) LZWDecodeCompat, and (3) LZWDecodeVector functions in tif_lzw.c in the LZW decoder in LibTIFF 3.8.2 and earlier allow context-dependent attackers to execute arbitrary code via a crafted TIFF file, related to improper handling of the CODE_CLEAR code.
0
Attacker Value
Unknown
CVE-2006-3459
Disclosure Date: August 03, 2006 (last updated October 04, 2023)
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow context-dependent attackers to execute arbitrary code or cause a denial of service via unspecified vectors, including a large tdir_count value in the TIFFFetchShortPair function in tif_dirread.c.
0
Attacker Value
Unknown
CVE-2006-2193
Disclosure Date: June 08, 2006 (last updated October 04, 2023)
Buffer overflow in the t2p_write_pdf_string function in tiff2pdf in libtiff 3.8.2 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TIFF file with a DocumentName tag that contains UTF-8 characters, which triggers the overflow when a character is sign extended to an integer that produces more digits than expected in an sprintf call.
0
Attacker Value
Unknown
CVE-2006-2656
Disclosure Date: May 30, 2006 (last updated November 08, 2023)
Stack-based buffer overflow in the tiffsplit command in libtiff 3.8.2 and earlier might might allow attackers to execute arbitrary code via a long filename. NOTE: tiffsplit is not setuid. If there is not a common scenario under which tiffsplit is called with attacker-controlled command line arguments, then perhaps this issue should not be included in CVE.
0