Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22985
HistoryApr 10, 2020 - 12:10 a.m.

Arbitrary Code Execution

2020-04-1000:10:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.005 Low

EPSS

Percentile

76.6%

libtiff is vulnerable to arbitrary code execution. The vulnerability exists as an integer overflow flaw was discovered in libtiff. An attacker could create a carefully crafted TIFF file in such a way that it could cause an application linked with libtiff to crash or possibly execute arbitrary code.

References