Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37671
HistoryOct 24, 2022 - 8:30 a.m.

Denial Of Service (DoS)

2022-10-2408:30:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
libtiff vulnerability
memory corruption
processcropselections
denial of service
tiff file
application crash

EPSS

0.001

Percentile

45.6%

libtiff.so is vulnerable to denial of service. The vulnerability is due to memory corruption in the function _TIFFmemset of processCropSelections inside the tiffcrop.c file, which allows an attacker to crash the application via a malicious tiff file.