Lucene search

K
osvGoogleOSV:USN-5084-1
HistorySep 21, 2021 - 11:41 a.m.

tiff vulnerability

2021-09-2111:41:31
Google
osv.dev
12
libtiff
vulnerability
remote attacker
denial of service
arbitrary code
user privileges
software

AI Score

8.1

Confidence

Low

EPSS

0.006

Percentile

79.5%

It was discovered that LibTIFF incorrectly handled certain malformed
images. If a user or automated system were tricked into opening a specially
crafted image, a remote attacker could crash the application, leading to a
denial of service, or possibly execute arbitrary code with user privileges.

AI Score

8.1

Confidence

Low

EPSS

0.006

Percentile

79.5%