Show filters
21 Total Results
Displaying 1-10 of 21
Sort by:
Attacker Value
Unknown
CVE-2016-10371
Disclosure Date: May 10, 2017 (last updated November 26, 2024)
The TIFFWriteDirectoryTagCheckedRational function in tif_dirwrite.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2016-9448
Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting the tags TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII to values that access 0-byte arrays. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-9297.
0
Attacker Value
Unknown
CVE-2016-5317
Disclosure Date: January 20, 2017 (last updated November 25, 2024)
Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.
0
Attacker Value
Unknown
CVE-2016-9273
Disclosure Date: January 18, 2017 (last updated November 25, 2024)
tiffsplit in libtiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file, related to changing td_nstrips in TIFF_STRIPCHOP mode.
0
Attacker Value
Unknown
CVE-2016-9297
Disclosure Date: January 18, 2017 (last updated November 25, 2024)
The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII tag values.
0
Attacker Value
Unknown
CVE-2016-5652
Disclosure Date: January 06, 2017 (last updated November 25, 2024)
An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a heap-based buffer overflow resulting in remote code execution. Vulnerability can be triggered via a saved TIFF file delivered by other means.
0
Attacker Value
Unknown
CVE-2016-9533
Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDifference heap-buffer-overflow."
0
Attacker Value
Unknown
CVE-2016-9538
Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35100.
0
Attacker Value
Unknown
CVE-2016-9536
Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip(). Reported as MSVR 35098, aka "t2p_process_jpeg_strip heap-buffer-overflow."
0
Attacker Value
Unknown
CVE-2016-9540
Disclosure Date: November 22, 2016 (last updated November 25, 2024)
tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width. Reported as MSVR 35103, aka "cpStripToTile heap-buffer-overflow."
0