Lucene search

K
osvGoogleOSV:DSA-626-1
HistoryJan 06, 2005 - 12:00 a.m.

tiff - unsanitised input

2005-01-0600:00:00
Google
osv.dev
3

0.082 Low

EPSS

Percentile

94.4%

Dmitry V. Levin discovered a buffer overflow in libtiff, the Tag Image
File Format library for processing TIFF graphics files. Upon reading
a TIFF file it is possible to crash the application, and maybe also to
execute arbitrary code.

For the stable distribution (woody) this problem has been fixed in
version 3.5.5-6.woody5.

For the unstable distribution (sid) this problem has been fixed in
version 3.6.1-5.

We recommend that you upgrade your libtiff package.

CPENameOperatorVersion
tiffeq3.5.5-6.woody3