Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-29695
HistoryFeb 03, 2023 - 12:00 a.m.

LibTIFF Buffer Overflow Vulnerability (CNVD-2023-29695)

2023-02-0300:00:00
China National Vulnerability Database
www.cnvd.org.cn
19
libtiff
buffer overflow
vulnerability
remote code execution
cnvd-2023-29695

EPSS

0.001

Percentile

35.2%

LibTIFF is a library for reading and writing TIFF (Tagged Image File Format) files. The library contains a number of command line tools for working with TIFF files. A buffer overflow vulnerability exists in LibTIFF version 4.5.0 and earlier, which stems from a boundary error when handling untrusted input. A remote attacker could exploit this vulnerability to execute arbitrary code on the system.