Search

Found 126 results in 33ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2013-4244 medium 6.8 FIX debian debian libtiff 13y ago The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary co…
CVE-2013-4243 medium 6.8 FIX debian debian libtiff 13y ago Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary c…
CVE-2013-4232 medium 6.8 FIX debian debian libtiff 13y ago Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary co…
CVE-2012-5581 medium 6.8 FIX debian debian libtiff 14y ago Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DOTRANGE tag in a TIFF …
CVE-2012-4564 medium 6.8 FIX ubuntu ubuntususe susedebian debian libtiff 14y ago ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM ima…
CVE-2012-4447 medium 6.8 FIX debian debian libtiff 14y ago Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF im…
CVE-2012-3401 medium 6.8 FIX debian debian libtiff 14y ago The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct pointer in certain error conditions, which allows conte…
CVE-2012-2113 medium 6.8 FIX debian debian libtiff 14y ago Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tiff image, whi…
CVE-2012-2088 high 7.5 FIX debian debian libtiff 14y ago Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute …
CVE-2012-1173 medium 6.8 FIX debian debian libtiff 14y ago Multiple integer overflows in tiff_getimage.c in LibTIFF 3.9.4 allow remote attackers to execute arbitrary code via a crafted tile size in a TIFF file, which is not properly handled by the (1) gtTile…
CVE-2010-4665 medium 4.3 FIX debian debian libtiff 15y ago Integer overflow in the ReadDirectory function in tiffdump.c in tiffdump in LibTIFF before 3.9.5 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified …
CVE-2009-5022 medium 7.8 EXPFIX debian debian libtiff 15y ago Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execute arbitrary code via a crafted TIFF file.
CVE-2011-1167 medium 6.8 FIX debian debian libtiff 15y ago Heap-based buffer overflow in the thunder (aka ThunderScan) decoder in tif_thunder.c in LibTIFF 3.9.4 and earlier allows remote attackers to execute arbitrary code via crafted THUNDER_2BITDELTAS data…
CVE-2010-3087 medium 6.8 FIX suse susedebian debian libtiff 16y ago LibTIFF before 3.9.2-5.2.1 in SUSE openSUSE 11.3 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted TIFF image.
CVE-2010-2631 medium 5.3 EXPFIX debian debian libtiff 16y ago LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly handle this during the second stage, which allows remote attackers to cause a den…
CVE-2010-2630 medium 5.3 EXPFIX debian debian libtiff 16y ago The TIFFReadDirectory function in LibTIFF 3.9.0 does not properly validate the data types of codec-specific tags that have an out-of-order position in a TIFF file, which allows remote attackers to ca…
CVE-2010-2483 medium 4.3 FIX debian debian libtiff 16y ago The TIFFRGBAImageGet function in LibTIFF 3.9.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a TIFF file with an invalid combination of SamplesPe…
CVE-2010-2482 medium 5.3 EXPFIX debian debian libtiff 16y ago LibTIFF 3.9.4 and earlier does not properly handle an invalid td_stripbytecount field, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via …
CVE-2010-2481 medium 4.3 FIX debian debian libtiff 16y ago The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read …
CVE-2010-2597 medium 4.3 FIX debian debian libtiff 16y ago The TIFFVStripSize function in tif_strip.c in LibTIFF 3.9.0 and 3.9.2 makes incorrect calls to the TIFFGetField function, which allows remote attackers to cause a denial of service (application crash…
CVE-2010-2596 medium 4.3 FIX arch archdebian debian libtiff 16y ago The OJPEGPostDecode function in tif_ojpeg.c in LibTIFF 3.9.0 and 3.9.2, as used in tiff2ps, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted…
CVE-2010-2595 medium 4.3 FIX debian debian libtiff 16y ago The TIFFYCbCrtoRGB function in LibTIFF 3.9.0 and 3.9.2, as used in ImageMagick, does not properly handle invalid ReferenceBlackWhite values, which allows remote attackers to cause a denial of service…
CVE-2010-2233 high 7.5 FIX debian debian libtiff 16y ago tif_getimage.c in LibTIFF 3.9.0 and 3.9.2 on 64-bit platforms, as used in ImageMagick, does not properly perform vertical flips, which allows remote attackers to cause a denial of service (applicatio…
CVE-2010-2443 medium 5.0 FIX debian debian libtiff 16y ago The OJPEGReadBufferFill function in tif_ojpeg.c in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an OJPEG image with u…
CVE-2010-2067 medium 6.8 FIX ubuntu ubuntudebian debian libtiff 16y ago Stack-based buffer overflow in the TIFFFetchSubjectDistance function in tif_dirread.c in LibTIFF before 3.9.4 allows remote attackers to cause a denial of service (application crash) or possibly exec…
CVE-2010-2065 medium 6.8 FIX debian debian libtiff 16y ago Integer overflow in the TIFFroundup macro in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TIFF file t…