Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7773
HistoryNov 13, 2018 - 6:52 a.m.

Denial Of Service (DoS)

2018-11-1306:52:28
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.003 Low

EPSS

Percentile

68.5%

libtiff.so is vulnerable to a denial of service (DoS) attack. A malicious user can pass a .tiff file to the TIFFWriteDirectorySec function in tif_dirwrite.c, causing a segmentation fault exception that can crash the application.

CPENameOperatorVersion
libtiff.sole5.2.0
libtiffle4.0.6.2