Show filters
266 Total Results
Displaying 161-170 of 266
Sort by:
Attacker Value
Unknown

CVE-2016-9453

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.
Attacker Value
Unknown

CVE-2016-9448

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297.
0
Attacker Value
Unknown

CVE-2016-6223

Disclosure Date: January 23, 2017 (last updated November 25, 2024)
The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of service (crash) or possibly obtain sensitive information via a negative index in a file-content buffer.
0
Attacker Value
Unknown

CVE-2017-5563

Disclosure Date: January 23, 2017 (last updated November 25, 2024)
LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image to tools/bmp2tiff.
0
Attacker Value
Unknown

CVE-2016-5321

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.
0
Attacker Value
Unknown

CVE-2016-5323

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted Tiff image.
0
Attacker Value
Unknown

CVE-2016-5319

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Heap-based buffer overflow in tif_packbits.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafted bmp file.
0
Attacker Value
Unknown

CVE-2016-5316

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
0
Attacker Value
Unknown

CVE-2016-5318

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Stack-based buffer overflow in the _TIFFVGetField function in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafted tiff.
0
Attacker Value
Unknown

CVE-2016-5317

Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.
0