Lucene search

K
ubuntucveUbuntu.comUB:CVE-2006-2024
HistoryApr 25, 2006 - 12:00 a.m.

CVE-2006-2024

2006-04-2500:00:00
ubuntu.com
ubuntu.com
14

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

0.041 Low

EPSS

Percentile

92.2%

Multiple vulnerabilities in libtiff before 3.8.1 allow context-dependent
attackers to cause a denial of service via a TIFF image that triggers
errors in (1) the TIFFFetchAnyArray function in (a) tif_dirread.c; (2)
certain “codec cleanup methods” in (b) tif_lzw.c, © tif_pixarlog.c, and
(d) tif_zip.c; (3) and improper restoration of setfield and getfield
methods in cleanup functions within (e) tif_jpeg.c, tif_pixarlog.c, (f)
tif_fax3.c, and tif_zip.c.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchtiff< 3.7.4-1ubuntu3.2UNKNOWN

4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

0.041 Low

EPSS

Percentile

92.2%