Show filters
251 Total Results
Displaying 21-30 of 251
Sort by:
Attacker Value
Unknown

CVE-2023-30774

Disclosure Date: May 19, 2023 (last updated January 09, 2024)
A vulnerability was found in the libtiff library. This flaw causes a heap buffer overflow issue via the TIFFTAG_INKNAMES and TIFFTAG_NUMBEROFINKS values.
Attacker Value
Unknown

CVE-2023-2731

Disclosure Date: May 17, 2023 (last updated October 08, 2023)
A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw allows a local attacker to craft specific input data that can cause the program to dereference a NULL pointer when decompressing a TIFF format file, resulting in a program crash or denial of service.
Attacker Value
Unknown

CVE-2023-30086

Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiffcp function in tiffcp.c.
Attacker Value
Unknown

CVE-2023-1916

Disclosure Date: April 10, 2023 (last updated October 08, 2023)
A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractImageSection function in tools/tiffcrop.c, resulting in a denial of service and limited information disclosure. This issue affects libtiff versions 4.x.
Attacker Value
Unknown

CVE-2022-4645

Disclosure Date: March 03, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
Attacker Value
Unknown

CVE-2023-0804

Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3609, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Attacker Value
Unknown

CVE-2023-0803

Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3516, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Attacker Value
Unknown

CVE-2023-0802

Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3724, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Attacker Value
Unknown

CVE-2023-0801

Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in libtiff/tif_unix.c:368, invoked by tools/tiffcrop.c:2903 and tools/tiffcrop.c:6778, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Attacker Value
Unknown

CVE-2023-0800

Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3502, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.