Show filters
100 Total Results
Displaying 71-80 of 100
Sort by:
Attacker Value
Unknown

CVE-2016-9297

Disclosure Date: January 18, 2017 (last updated November 25, 2024)
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII tag values.
0
Attacker Value
Unknown

CVE-2017-5225

Disclosure Date: January 12, 2017 (last updated November 25, 2024)
LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSample value.
0
Attacker Value
Unknown

CVE-2016-5652

Disclosure Date: January 06, 2017 (last updated November 25, 2024)
An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a heap-based buffer overflow resulting in remote code execution. Vulnerability can be triggered via a saved TIFF file delivered by other means.
0
Attacker Value
Unknown

CVE-2016-9533

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDifference heap-buffer-overflow."
0
Attacker Value
Unknown

CVE-2016-9538

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35100.
0
Attacker Value
Unknown

CVE-2016-9536

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip(). Reported as MSVR 35098, aka "t2p_process_jpeg_strip heap-buffer-overflow."
0
Attacker Value
Unknown

CVE-2016-9540

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width. Reported as MSVR 35103, aka "cpStripToTile heap-buffer-overflow."
0
Attacker Value
Unknown

CVE-2016-9537

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.
0
Attacker Value
Unknown

CVE-2016-9539

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer(). Reported as MSVR 35092.
0
Attacker Value
Unknown

CVE-2016-9535

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mode, when dealing with unusual tile size like YCbCr with subsampling. Reported as MSVR 35105, aka "Predictor heap-buffer-overflow."
0