Vulnerabilities
Vulnerable Software
Libtiff:  >> Libtiff  >> 4.0  Security Vulnerabilities
Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
CVSS Score
6.8
EPSS Score
0.056
Published
2012-07-22
Multiple integer overflows in inter-color spaces conversion tools in libtiff 3.8 through 3.8.2, 3.9, and 4.0 allow context-dependent attackers to execute arbitrary code via a TIFF image with large (1) width and (2) height values, which triggers a heap-based buffer overflow in the (a) cvt_whole_image function in tiff2rgba and (b) tiffcvt function in rgb2ycbcr.
CVSS Score
9.3
EPSS Score
0.042
Published
2009-07-14


Contact Us

Shodan ® - All rights reserved