ALT-PU-2017-2334-1
Closed vulnerabilities
BDU:2015-06338
Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-06339
Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-06340
Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-06344
Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-06345
Уязвимости операционной системы Red Hat Enterprise Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-08609
Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-08610
Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-08611
Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-08612
Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-09010
Уязвимости операционной системы CentOS, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2015-09718
Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2016-00538
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-00539
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-00540
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-01124
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-02189
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-02190
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-02191
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2016-02192
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2017-00327
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2017-00328
Уязвимость операционной системы openSUSE, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2017-00329
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать аварийное завершение работы приложения
BDU:2017-00330
Уязвимость библиотеки LibTIFF, позволяющая нарушителю получить несанкционированный доступ к устройству
BDU:2017-00883
Уязвимость библиотеки LibTIFF, позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2012-4564
ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory allocation, and a heap-based buffer overflow.
- openSUSE-SU-2013:0187
- openSUSE-SU-2013:0187
- RHSA-2012:1590
- RHSA-2012:1590
- 51133
- 51133
- DSA-2575
- DSA-2575
- [oss-security] 20121102 libtiff: Missing return value check in ppm2tiff leading to heap-buffer overflow when reading a tiff file
- [oss-security] 20121102 libtiff: Missing return value check in ppm2tiff leading to heap-buffer overflow when reading a tiff file
- [oss-security] 20121102 Re: libtiff: Missing return value check in ppm2tiff leading to heap-buffer overflow when reading a tiff file
- [oss-security] 20121102 Re: libtiff: Missing return value check in ppm2tiff leading to heap-buffer overflow when reading a tiff file
- 86878
- 86878
- 56372
- 56372
- USN-1631-1
- USN-1631-1
- https://bugzilla.redhat.com/show_bug.cgi?id=871700
- https://bugzilla.redhat.com/show_bug.cgi?id=871700
- libtiff-ppm2tiff-bo(79750)
- libtiff-ppm2tiff-bo(79750)
Modified: 2024-11-21
CVE-2013-1960
Heap-based buffer overflow in the t2p_process_jpeg_strip function in tiff2pdf in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image file.
- FEDORA-2013-7339
- FEDORA-2013-7339
- FEDORA-2013-7369
- FEDORA-2013-7369
- FEDORA-2013-7361
- FEDORA-2013-7361
- openSUSE-SU-2013:0922
- openSUSE-SU-2013:0922
- openSUSE-SU-2013:0944
- openSUSE-SU-2013:0944
- RHSA-2014:0223
- RHSA-2014:0223
- [oss-security] 20130502 Fwd: Two libtiff (tiff2pdf flaws)
- [oss-security] 20130502 Fwd: Two libtiff (tiff2pdf flaws)
- 53237
- 53237
- 53765
- 53765
- DSA-2698
- DSA-2698
- 59609
- 59609
- https://bugzilla.redhat.com/show_bug.cgi?id=952158
- https://bugzilla.redhat.com/show_bug.cgi?id=952158
Modified: 2024-11-21
CVE-2013-1961
Stack-based buffer overflow in the t2p_write_pdf_page function in tiff2pdf in libtiff before 4.0.3 allows remote attackers to cause a denial of service (application crash) via a crafted image length and resolution in a TIFF image file.
- FEDORA-2013-7339
- FEDORA-2013-7339
- FEDORA-2013-7369
- FEDORA-2013-7369
- FEDORA-2013-7361
- FEDORA-2013-7361
- openSUSE-SU-2013:0922
- openSUSE-SU-2013:0922
- openSUSE-SU-2013:0944
- openSUSE-SU-2013:0944
- RHSA-2014:0223
- RHSA-2014:0223
- [oss-security] 20130502 Fwd: Two libtiff (tiff2pdf flaws)
- [oss-security] 20130502 Fwd: Two libtiff (tiff2pdf flaws)
- 53237
- 53237
- 53765
- 53765
- DSA-2698
- DSA-2698
- 59607
- 59607
- https://bugzilla.redhat.com/show_bug.cgi?id=952131
- https://bugzilla.redhat.com/show_bug.cgi?id=952131
Modified: 2024-11-21
CVE-2013-4232
Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2449
- http://bugzilla.maptools.org/show_bug.cgi?id=2449
- RHSA-2014:0223
- RHSA-2014:0223
- 54543
- 54543
- 54628
- 54628
- [tiff] 20130801 Vulnerabilities in libtiff 4.0.3
- [tiff] 20130801 Vulnerabilities in libtiff 4.0.3
- DSA-2744
- DSA-2744
- [oss-security] 20130809 Re: CVE Request -- Four (stack-based) buffer overflows and one use-after-free in libtiff v4.0.3 reported by Pedro Ribeiro
- [oss-security] 20130809 Re: CVE Request -- Four (stack-based) buffer overflows and one use-after-free in libtiff v4.0.3 reported by Pedro Ribeiro
- https://bugzilla.redhat.com/show_bug.cgi?id=995975
- https://bugzilla.redhat.com/show_bug.cgi?id=995975
Modified: 2024-11-21
CVE-2013-4243
Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2451
- http://bugzilla.maptools.org/show_bug.cgi?id=2451
- RHSA-2014:0223
- RHSA-2014:0223
- 54543
- 54543
- 54628
- 54628
- DSA-2744
- DSA-2744
- 62082
- 62082
- https://bugzilla.redhat.com/show_bug.cgi?id=996052
- https://bugzilla.redhat.com/show_bug.cgi?id=996052
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2013-4244
The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a crafted GIF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2452
- http://bugzilla.maptools.org/show_bug.cgi?id=2452
- RHSA-2014:0223
- RHSA-2014:0223
- https://bugzilla.redhat.com/show_bug.cgi?id=996468
- https://bugzilla.redhat.com/show_bug.cgi?id=996468
- https://github.com/vadz/libtiff/commit/ce6841d9e41d621ba23cf18b190ee6a23b2cc833
- https://github.com/vadz/libtiff/commit/ce6841d9e41d621ba23cf18b190ee6a23b2cc833
Modified: 2024-11-21
CVE-2014-8127
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted TIFF image to the (1) checkInkNamesString function in tif_dir.c in the thumbnail tool, (2) compresscontig function in tiff2bw.c in the tiff2bw tool, (3) putcontig8bitCIELab function in tif_getimage.c in the tiff2rgba tool, LZWPreDecode function in tif_lzw.c in the (4) tiff2ps or (5) tiffdither tool, (6) NeXTDecode function in tif_next.c in the tiffmedian tool, or (7) TIFFWriteDirectoryTagLongLong8Array function in tif_dirwrite.c in the tiffset tool.
- http://bugzilla.maptools.org/show_bug.cgi?id=2484
- http://bugzilla.maptools.org/show_bug.cgi?id=2484
- http://bugzilla.maptools.org/show_bug.cgi?id=2485
- http://bugzilla.maptools.org/show_bug.cgi?id=2485
- http://bugzilla.maptools.org/show_bug.cgi?id=2486
- http://bugzilla.maptools.org/show_bug.cgi?id=2486
- http://bugzilla.maptools.org/show_bug.cgi?id=2496
- http://bugzilla.maptools.org/show_bug.cgi?id=2496
- http://bugzilla.maptools.org/show_bug.cgi?id=2497
- http://bugzilla.maptools.org/show_bug.cgi?id=2497
- http://bugzilla.maptools.org/show_bug.cgi?id=2500
- http://bugzilla.maptools.org/show_bug.cgi?id=2500
- openSUSE-SU-2015:0450
- openSUSE-SU-2015:0450
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- http://www.conostix.com/pub/adv/CVE-2014-8127-LibTIFF-Out-of-bounds_Reads.txt
- http://www.conostix.com/pub/adv/CVE-2014-8127-LibTIFF-Out-of-bounds_Reads.txt
- DSA-3273
- DSA-3273
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- 72323
- 72323
- 1032760
- 1032760
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2014-8129
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.
- http://bugzilla.maptools.org/show_bug.cgi?id=2487
- http://bugzilla.maptools.org/show_bug.cgi?id=2487
- http://bugzilla.maptools.org/show_bug.cgi?id=2488
- http://bugzilla.maptools.org/show_bug.cgi?id=2488
- APPLE-SA-2015-06-30-1
- APPLE-SA-2015-06-30-1
- APPLE-SA-2015-06-30-2
- APPLE-SA-2015-06-30-2
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204942
- http://support.apple.com/kb/HT204942
- http://www.conostix.com/pub/adv/CVE-2014-8129-LibTIFF-Out-of-bounds_Reads_and_Writes.txt
- http://www.conostix.com/pub/adv/CVE-2014-8129-LibTIFF-Out-of-bounds_Reads_and_Writes.txt
- 72352
- 72352
- 1032760
- 1032760
- https://bugzilla.redhat.com/show_bug.cgi?id=1185815
- https://bugzilla.redhat.com/show_bug.cgi?id=1185815
- GLSA-201701-16
- GLSA-201701-16
- DSA-3273
- DSA-3273
Modified: 2024-11-21
CVE-2014-8130
The _TIFFmalloc function in tif_unix.c in LibTIFF 4.0.3 does not reject a zero size, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image that is mishandled by the TIFFWriteScanline function in tif_write.c, as demonstrated by tiffdither.
- http://bugzilla.maptools.org/show_bug.cgi?id=2483
- http://bugzilla.maptools.org/show_bug.cgi?id=2483
- APPLE-SA-2015-06-30-1
- APPLE-SA-2015-06-30-1
- APPLE-SA-2015-06-30-2
- APPLE-SA-2015-06-30-2
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204942
- http://support.apple.com/kb/HT204942
- http://www.conostix.com/pub/adv/CVE-2014-8130-LibTIFF-Division_By_Zero.txt
- http://www.conostix.com/pub/adv/CVE-2014-8130-LibTIFF-Division_By_Zero.txt
- 72353
- 72353
- 1032760
- 1032760
- https://bugzilla.redhat.com/show_bug.cgi?id=1185817
- https://bugzilla.redhat.com/show_bug.cgi?id=1185817
- https://github.com/vadz/libtiff/commit/3c5eb8b1be544e41d2c336191bc4936300ad7543
- https://github.com/vadz/libtiff/commit/3c5eb8b1be544e41d2c336191bc4936300ad7543
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2014-9330
Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.
- http://bugzilla.maptools.org/show_bug.cgi?id=2494
- http://bugzilla.maptools.org/show_bug.cgi?id=2494
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- 20141222 CVE-2014-9330: Libtiff integer overflow in bmp2tiff
- 20141222 CVE-2014-9330: Libtiff integer overflow in bmp2tiff
- DSA-3273
- DSA-3273
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 71789
- 71789
- 1031442
- 1031442
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2014-9655
The (1) putcontig8bitYCbCr21tile function in tif_getimage.c or (2) NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff-cvs-1.tif and libtiff-cvs-2.tif.
- [oss-security] 20150207 Re: Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150207 Re: Multiple vulnerabilities in LibTIFF and associated tools
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3273
- DSA-3273
- DSA-3467
- DSA-3467
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-1547
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff5.tif.
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150124 Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150207 Re: Multiple vulnerabilities in LibTIFF and associated tools
- [oss-security] 20150207 Re: Multiple vulnerabilities in LibTIFF and associated tools
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3467
- DSA-3467
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 73438
- 73438
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-8781
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds write) via an invalid number of samples per pixel in a LogL compressed TIFF image, a different vulnerability than CVE-2015-8782.
- http://bugzilla.maptools.org/show_bug.cgi?id=2522#c0
- http://bugzilla.maptools.org/show_bug.cgi?id=2522#c0
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0414
- openSUSE-SU-2016:0414
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3467
- DSA-3467
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 81730
- 81730
- USN-2939-1
- USN-2939-1
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-8782
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds writes) via a crafted TIFF image, a different vulnerability than CVE-2015-8781.
- http://bugzilla.maptools.org/show_bug.cgi?id=2522
- http://bugzilla.maptools.org/show_bug.cgi?id=2522
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0414
- openSUSE-SU-2016:0414
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3467
- DSA-3467
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 81730
- 81730
- USN-2939-1
- USN-2939-1
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-8783
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds reads) via a crafted TIFF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2522
- http://bugzilla.maptools.org/show_bug.cgi?id=2522
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0405
- openSUSE-SU-2016:0414
- openSUSE-SU-2016:0414
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3467
- DSA-3467
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- [oss-security] 20160124 Re: CVE Request: tiff: Out-of-bounds write for invalid images using LogL compression
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 81730
- 81730
- USN-2939-1
- USN-2939-1
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-8784
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted TIFF image, as demonstrated by libtiff5.tif.
- http://bugzilla.maptools.org/show_bug.cgi?id=2508
- http://bugzilla.maptools.org/show_bug.cgi?id=2508
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3467
- DSA-3467
- [oss-security] 20160124 CVE Request: tiff: potential out-of-bound write in NeXTDecode()
- [oss-security] 20160124 CVE Request: tiff: potential out-of-bound write in NeXTDecode()
- [oss-security] 20160124 Re: CVE Request: tiff: potential out-of-bound write in NeXTDecode()
- [oss-security] 20160124 Re: CVE Request: tiff: potential out-of-bound write in NeXTDecode()
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 81696
- 81696
- USN-2939-1
- USN-2939-1
- https://github.com/vadz/libtiff/commit/b18012dae552f85dcc5c57d3bf4e997a15b1cc1c
- https://github.com/vadz/libtiff/commit/b18012dae552f85dcc5c57d3bf4e997a15b1cc1c
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2015-8870
Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or possibly obtain sensitive information from process memory, via crafted width and length values in RLE4 or RLE8 data in a BMP file.
Modified: 2024-11-21
CVE-2016-3620
The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2570
- http://bugzilla.maptools.org/show_bug.cgi?id=2570
- [oss-security] 20160407 CVE-2016-3620 libtiff: Out-of-bounds Read in the bmp2tiff tool
- [oss-security] 20160407 CVE-2016-3620 libtiff: Out-of-bounds Read in the bmp2tiff tool
- 1035508
- 1035508
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3621
The LZWEncode function in tif_lzw.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c lzw" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2565
- http://bugzilla.maptools.org/show_bug.cgi?id=2565
- [oss-security] 20160407 CVE-2016-3621 libtiff: Out-of-bounds Read in the bmp2tiff tool
- [oss-security] 20160407 CVE-2016-3621 libtiff: Out-of-bounds Read in the bmp2tiff tool
- 1035508
- 1035508
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3623
The rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero) by setting the (1) v or (2) h parameter to 0.
- http://bugzilla.maptools.org/show_bug.cgi?id=2569
- http://bugzilla.maptools.org/show_bug.cgi?id=2569
- openSUSE-SU-2016:2275
- openSUSE-SU-2016:2275
- DSA-3762
- DSA-3762
- [oss-security] 20160408 CVE-2016-3623 libtiff: Divide By Zero in the rgb2ycbcr tool
- [oss-security] 20160408 CVE-2016-3623 libtiff: Divide By Zero in the rgb2ycbcr tool
- 85952
- 85952
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3624
The cvtClump function in the rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) by setting the "-v" option to -1.
- http://bugzilla.maptools.org/show_bug.cgi?id=2568
- http://bugzilla.maptools.org/show_bug.cgi?id=2568
- DSA-3762
- DSA-3762
- [oss-security] 20160408 CVE-2016-3624 libtiff: Out-of-bounds Write in the rgb2ycbcr tool
- [oss-security] 20160408 CVE-2016-3624 libtiff: Out-of-bounds Write in the rgb2ycbcr tool
- 85956
- 85956
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3625
tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted TIFF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2566
- http://bugzilla.maptools.org/show_bug.cgi?id=2566
- [oss-security] 20160408 CVE-2016-3625 libtiff: Out-of-bounds Read in the tiff2bw tool
- [oss-security] 20160408 CVE-2016-3625 libtiff: Out-of-bounds Read in the tiff2bw tool
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3631
The (1) cpStrips and (2) cpTiles functions in the thumbnail tool in LibTIFF 4.0.6 and earlier allow remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the bytecounts[] array variable.
Modified: 2024-11-21
CVE-2016-3632
The _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via a crafted TIFF image.
- http://bugzilla.maptools.org/show_bug.cgi?id=2549
- http://bugzilla.maptools.org/show_bug.cgi?id=2549
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- [oss-security] 20160408 CVE-2016-3632 - libtiff 4.0.6 illegel write
- [oss-security] 20160408 CVE-2016-3632 - libtiff 4.0.6 illegel write
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 85953
- 85953
- 85960
- 85960
- https://bugzilla.redhat.com/show_bug.cgi?id=1325095
- https://bugzilla.redhat.com/show_bug.cgi?id=1325095
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3633
The setrow function in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the src variable.
Modified: 2024-11-21
CVE-2016-3634
The tagCompare function in tif_dirinfo.c in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to field_tag matching.
Modified: 2024-11-21
CVE-2016-3658
The TIFFWriteDirectoryTagLongLong8Array function in tif_dirwrite.c in the tiffset tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via vectors involving the ma variable.
Modified: 2024-11-21
CVE-2016-3945
Multiple integer overflows in the (1) cvt_by_strip and (2) cvt_by_tile functions in the tiff2rgba tool in LibTIFF 4.0.6 and earlier, when -b mode is enabled, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted TIFF image, which triggers an out-of-bounds write.
- http://bugzilla.maptools.org/show_bug.cgi?id=2545
- http://bugzilla.maptools.org/show_bug.cgi?id=2545
- openSUSE-SU-2016:2275
- openSUSE-SU-2016:2275
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3762
- DSA-3762
- [oss-security] 20160408 CVE-2016-3945 libtiff: Out-of-bounds Write in the tiff2rgba tool
- [oss-security] 20160408 CVE-2016-3945 libtiff: Out-of-bounds Write in the tiff2rgba tool
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 85960
- 85960
- https://bugzilla.redhat.com/show_bug.cgi?id=1325093
- https://bugzilla.redhat.com/show_bug.cgi?id=1325093
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3990
Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted TIFF image to tiffcp.
- http://bugzilla.maptools.org/show_bug.cgi?id=2544
- http://bugzilla.maptools.org/show_bug.cgi?id=2544
- openSUSE-SU-2016:2275
- openSUSE-SU-2016:2275
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3762
- DSA-3762
- [oss-security] 20160412 CVE-2016-3990 : out-of-bounds write in horizontalDifference8() in tiffcp tool
- [oss-security] 20160412 CVE-2016-3990 : out-of-bounds write in horizontalDifference8() in tiffcp tool
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 86000
- 86000
- https://bugzilla.redhat.com/show_bug.cgi?id=1326246
- https://bugzilla.redhat.com/show_bug.cgi?id=1326246
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-3991
Heap-based buffer overflow in the loadImage function in the tiffcrop tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via a crafted TIFF image with zero tiles.
- http://bugzilla.maptools.org/show_bug.cgi?id=2543
- http://bugzilla.maptools.org/show_bug.cgi?id=2543
- openSUSE-SU-2016:2275
- openSUSE-SU-2016:2275
- RHSA-2016:1546
- RHSA-2016:1546
- RHSA-2016:1547
- RHSA-2016:1547
- DSA-3762
- DSA-3762
- [oss-security] 20160412 CVE-2016-3991 : out-of-bounds write in loadImage() in tiffcrop tool
- [oss-security] 20160412 CVE-2016-3991 : out-of-bounds write in loadImage() in tiffcrop tool
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 85996
- 85996
- https://bugzilla.redhat.com/show_bug.cgi?id=1326249
- https://bugzilla.redhat.com/show_bug.cgi?id=1326249
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-5102
Buffer overflow in the readgifimage function in gif2tiff.c in the gif2tiff tool in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (segmentation fault) via a crafted gif file.
Modified: 2024-11-21
CVE-2016-5314
Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by overwriting the vgetparent function pointer with rgb2ycbcr.
- http://bugzilla.maptools.org/show_bug.cgi?id=2554
- http://bugzilla.maptools.org/show_bug.cgi?id=2554
- openSUSE-SU-2016:3035
- openSUSE-SU-2016:3035
- openSUSE-SU-2016:1889
- openSUSE-SU-2016:1889
- openSUSE-SU-2016:2321
- openSUSE-SU-2016:2321
- openSUSE-SU-2016:2375
- openSUSE-SU-2016:2375
- [oss-security] 20160615 CVE-2016-5314: libtiff 4.0.6 PixarLogDecode() out-of-bound writes
- [oss-security] 20160615 CVE-2016-5314: libtiff 4.0.6 PixarLogDecode() out-of-bound writes
- [oss-security] 20160615 CVE-2016-5320: libtiff 4.0.6 rgb2ycbcr: command excution
- [oss-security] 20160615 CVE-2016-5320: libtiff 4.0.6 rgb2ycbcr: command excution
- [oss-security] 20160630 Re: Re: CVE request: Heap-based buffer overflow in LibTIFF when using the PixarLog compression format
- [oss-security] 20160630 Re: Re: CVE request: Heap-based buffer overflow in LibTIFF when using the PixarLog compression format
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- 91195
- 91195
- 91245
- 91245
- https://bugzilla.redhat.com/show_bug.cgi?id=1346687
- https://bugzilla.redhat.com/show_bug.cgi?id=1346687
- https://github.com/vadz/libtiff/commit/391e77fcd217e78b2c51342ac3ddb7100ecacdd2
- https://github.com/vadz/libtiff/commit/391e77fcd217e78b2c51342ac3ddb7100ecacdd2
- GLSA-201701-16
- GLSA-201701-16
- DSA-3762
- DSA-3762
Modified: 2024-11-21
CVE-2016-5315
The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.
- DSA-3762
- DSA-3762
- [oss-security] 20160615 CVE-2016-5315: libtiff 4.0.6 tif_dir.c: setByteArray() Read access violation
- [oss-security] 20160615 CVE-2016-5315: libtiff 4.0.6 tif_dir.c: setByteArray() Read access violation
- 91204
- 91204
- https://bugzilla.redhat.com/show_bug.cgi?id=1346694
- https://bugzilla.redhat.com/show_bug.cgi?id=1346694
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-5316
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
- openSUSE-SU-2016:1889
- openSUSE-SU-2016:1889
- openSUSE-SU-2016:2321
- openSUSE-SU-2016:2321
- openSUSE-SU-2016:2375
- openSUSE-SU-2016:2375
- DSA-3762
- DSA-3762
- [oss-security] 20160615 CVE-2016-5316: libtiff 4.0.6 tif_pixarlog.c: PixarLogCleanup() Segmentation fault
- [oss-security] 20160615 CVE-2016-5316: libtiff 4.0.6 tif_pixarlog.c: PixarLogCleanup() Segmentation fault
- 91203
- 91203
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-5318
Stack-based buffer overflow in the _TIFFVGetField function in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafted tiff.
- [oss-security] 20160427 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160427 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160606 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160606 3 bugs refer to buffer overflow in in libtiff 4.0.6
- 88604
- 88604
- GLSA-201701-16
- GLSA-201701-16
- USN-3606-1
- USN-3606-1
Modified: 2024-11-21
CVE-2016-5319
Heap-based buffer overflow in tif_packbits.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafted bmp file.
- [oss-security] 20160427 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160427 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160606 3 bugs refer to buffer overflow in in libtiff 4.0.6
- [oss-security] 20160606 3 bugs refer to buffer overflow in in libtiff 4.0.6
- 88604
- 88604
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-5321
The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.
Modified: 2024-11-21
CVE-2016-5322
The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.
- DSA-3762
- DSA-3762
- [oss-security] 20160615 CVE-2016-5315: libtiff 4.0.6 tif_dir.c: setByteArray() Read access violation
- [oss-security] 20160615 CVE-2016-5315: libtiff 4.0.6 tif_dir.c: setByteArray() Read access violation
- 91204
- 91204
- 91205
- 91205
- https://bugzilla.redhat.com/show_bug.cgi?id=1346694
- https://bugzilla.redhat.com/show_bug.cgi?id=1346694
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-5323
The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted Tiff image.
Modified: 2024-11-21
CVE-2016-6223
The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of service (crash) or possibly obtain sensitive information via a negative index in a file-content buffer.
- http://libtiff.maptools.org/v4.0.7.html
- http://libtiff.maptools.org/v4.0.7.html
- DSA-3762
- DSA-3762
- [oss-security] 20160713 CVE request: Information leak in LibTIFF
- [oss-security] 20160713 CVE request: Information leak in LibTIFF
- [oss-security] 20160714 Re: CVE request: Information leak in LibTIFF
- [oss-security] 20160714 Re: CVE request: Information leak in LibTIFF
- 91741
- 91741
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-9453
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.
- http://bugzilla.maptools.org/show_bug.cgi?id=2579
- http://bugzilla.maptools.org/show_bug.cgi?id=2579
- openSUSE-SU-2016:3035
- openSUSE-SU-2016:3035
- DSA-3762
- DSA-3762
- [oss-security] 20161118 Re: CVE Request: libtiff: Out-of-bounds Write memcpy and less bound check in tiff2pdf
- [oss-security] 20161118 Re: CVE Request: libtiff: Out-of-bounds Write memcpy and less bound check in tiff2pdf
- 94406
- 94406
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2016-9532
Integer overflow in the writeBufferToSeparateStrips function in tiffcrop.c in LibTIFF before 4.0.7 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tif file.
- http://bugzilla.maptools.org/show_bug.cgi?id=2592
- http://bugzilla.maptools.org/show_bug.cgi?id=2592
- DSA-3762
- DSA-3762
- [oss-security] 20161111 CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- [oss-security] 20161111 CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- [oss-security] 20161121 Re: CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- [oss-security] 20161121 Re: CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- [oss-security] 20161121 Re: CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- [oss-security] 20161121 Re: CVE request: LibTIFF tiffcrop: Heap buffer overflow via writeBufferToSeparateStrips
- 94424
- 94424
- https://bugzilla.redhat.com/show_bug.cgi?id=1397726
- https://bugzilla.redhat.com/show_bug.cgi?id=1397726
- GLSA-201701-16
- GLSA-201701-16
Modified: 2024-11-21
CVE-2018-5360
LibTIFF before 4.0.6 mishandles the reading of TIFF files, as demonstrated by a heap-based buffer over-read in the ReadTIFFImage function in coders/tiff.c in GraphicsMagick 1.3.27.
- http://bugzilla.maptools.org/show_bug.cgi?id=2500
- http://bugzilla.maptools.org/show_bug.cgi?id=2500
- https://gitlab.com/libtiff/libtiff/commit/739dcd28a061738b317c1e9f91029d9cbc157159
- https://gitlab.com/libtiff/libtiff/commit/739dcd28a061738b317c1e9f91029d9cbc157159
- https://sourceforge.net/p/graphicsmagick/bugs/540/
- https://sourceforge.net/p/graphicsmagick/bugs/540/