Show filters
251 Total Results
Displaying 31-40 of 251
Sort by:
Attacker Value
Unknown
CVE-2023-0799
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3701, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
0
Attacker Value
Unknown
CVE-2023-0798
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3400, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
0
Attacker Value
Unknown
CVE-2023-0797
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in libtiff/tif_unix.c:368, invoked by tools/tiffcrop.c:2903 and tools/tiffcrop.c:6921, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
0
Attacker Value
Unknown
CVE-2023-0796
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3592, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
0
Attacker Value
Unknown
CVE-2023-0795
Disclosure Date: February 13, 2023 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3488, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
0
Attacker Value
Unknown
CVE-2022-48281
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
processCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g., "WRITE of size 307203") via a crafted TIFF image.
0
Attacker Value
Unknown
CVE-2022-3970
Disclosure Date: November 13, 2022 (last updated November 18, 2023)
A vulnerability was found in LibTIFF. It has been classified as critical. This affects the function TIFFReadRGBATileExt of the file libtiff/tif_getimage.c. The manipulation leads to integer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The name of the patch is 227500897dfb07fb7d27f7aa570050e62617e3be. It is recommended to apply a patch to fix this issue. The identifier VDB-213549 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2022-3627
Disclosure Date: October 21, 2022 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemcpy in libtiff/tif_unix.c:346 when called from extractImageSection, tools/tiffcrop.c:6860, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191.
0
Attacker Value
Unknown
CVE-2022-3626
Disclosure Date: October 21, 2022 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 236b7191.
0
Attacker Value
Unknown
CVE-2022-3599
Disclosure Date: October 21, 2022 (last updated October 08, 2023)
LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
0