Lucene search

K
cveMitreCVE-2004-1183
HistoryJan 19, 2005 - 5:00 a.m.

CVE-2004-1183

2005-01-1905:00:00
mitre
web.nvd.nist.gov
39
integer overflow
tiffdump utility
libtiff
denial of service
arbitrary code
tiff file
nvd

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.082

Percentile

94.4%

Integer overflow in the tiffdump utility for libtiff 3.7.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF file.

Affected configurations

Nvd
Node
libtifflibtiffMatch3.4
OR
libtifflibtiffMatch3.5.1
OR
libtifflibtiffMatch3.5.2
OR
libtifflibtiffMatch3.5.3
OR
libtifflibtiffMatch3.5.4
OR
libtifflibtiffMatch3.5.5
OR
libtifflibtiffMatch3.5.6
OR
libtifflibtiffMatch3.5.7
OR
libtifflibtiffMatch3.6.0
OR
libtifflibtiffMatch3.6.1
OR
libtifflibtiffMatch3.7.0
OR
libtifflibtiffMatch3.7.1
VendorProductVersionCPE
libtifflibtiff3.4cpe:2.3:a:libtiff:libtiff:3.4:*:*:*:*:*:*:*
libtifflibtiff3.5.1cpe:2.3:a:libtiff:libtiff:3.5.1:*:*:*:*:*:*:*
libtifflibtiff3.5.2cpe:2.3:a:libtiff:libtiff:3.5.2:*:*:*:*:*:*:*
libtifflibtiff3.5.3cpe:2.3:a:libtiff:libtiff:3.5.3:*:*:*:*:*:*:*
libtifflibtiff3.5.4cpe:2.3:a:libtiff:libtiff:3.5.4:*:*:*:*:*:*:*
libtifflibtiff3.5.5cpe:2.3:a:libtiff:libtiff:3.5.5:*:*:*:*:*:*:*
libtifflibtiff3.5.6cpe:2.3:a:libtiff:libtiff:3.5.6:*:*:*:*:*:*:*
libtifflibtiff3.5.7cpe:2.3:a:libtiff:libtiff:3.5.7:*:*:*:*:*:*:*
libtifflibtiff3.6.0cpe:2.3:a:libtiff:libtiff:3.6.0:*:*:*:*:*:*:*
libtifflibtiff3.6.1cpe:2.3:a:libtiff:libtiff:3.6.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.082

Percentile

94.4%