Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6234
HistoryMay 03, 2018 - 7:43 a.m.

Denial Of Service (DoS)

2018-05-0307:43:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

EPSS

0.006

Percentile

77.8%

libtiff.so is vulnerable to denial of service (DoS) attacks. A malicious user can pass a tiff file to the combineSeparateSamples8bits function in tiffcrop.c, allowing a malicious user to cause an out-of-bounds read, crashing the application.