Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6621
HistoryJun 07, 2018 - 7:25 a.m.

Remote Code Execution (RCE)

2018-06-0707:25:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.091 Low

EPSS

Percentile

94.7%

libtiff.so is vulnerable to remote code execution (RCE) attacks. A malicious user can pass a tiff file to the TIFFGetField function in tif_dir.c that can lead to a type confusion, crashing the application or potentially causing arbitrary code to be executed.