Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39426
HistoryFeb 26, 2023 - 12:09 p.m.

Denial Of Service (DoS)

2023-02-2612:09:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
21
vulnerability
memory consumption
tiff image
application crash
github.com/golang/image

EPSS

0.001

Percentile

39.6%

github.com/golang/image is vulnerable to Denial of Service (DoS) attacks. An attacker is able to consume a significant amount of memory through the DecodeConfig component when passed a malformed TIFF image, resulting in an application crash.