Show filters
100 Total Results
Displaying 81-90 of 100
Sort by:
Attacker Value
Unknown

CVE-2016-9534

Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported as MSVR 35095, aka "TIFFFlushData1 heap-buffer-overflow."
0
Attacker Value
Unknown

CVE-2016-8331

Disclosure Date: October 28, 2016 (last updated November 25, 2024)
An exploitable remote code execution vulnerability exists in the handling of TIFF images in LibTIFF version 4.0.6. A crafted TIFF document can lead to a type confusion vulnerability resulting in remote code execution. This vulnerability can be triggered via a TIFF file delivered to the application using LibTIFF's tag extension functionality.
0
Attacker Value
Unknown

CVE-2016-3622

Disclosure Date: October 03, 2016 (last updated November 25, 2024)
The fpAcc function in tif_predict.c in the tiff2rgba tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted TIFF image.
0
Attacker Value
Unknown

CVE-2016-3619

Disclosure Date: October 03, 2016 (last updated November 25, 2024)
The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
0
Attacker Value
Unknown

CVE-2016-3186

Disclosure Date: April 19, 2016 (last updated November 25, 2024)
Buffer overflow in the readextension function in gif2tiff.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (application crash) via a crafted GIF file.
0
Attacker Value
Unknown

CVE-2015-8683

Disclosure Date: April 13, 2016 (last updated November 25, 2024)
The putcontig8bitCIELab function in tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a packed TIFF image.
0
Attacker Value
Unknown

CVE-2015-8665

Disclosure Date: April 13, 2016 (last updated November 25, 2024)
tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.
0
Attacker Value
Unknown

CVE-2015-7554

Disclosure Date: January 08, 2016 (last updated November 25, 2024)
The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via crafted field data in an extension tag in a TIFF image.
0
Attacker Value
Unknown

CVE-2014-9330

Disclosure Date: January 20, 2015 (last updated October 05, 2023)
Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2013-4231

Disclosure Date: January 19, 2014 (last updated November 08, 2023)
Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF image to tools/rgb2ycbcr.c. NOTE: vectors 1 and 3 are disputed by Red Hat, which states that the input cannot exceed the allocated buffer size.
0