7.5

CVE-2004-1307

Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.

Data is provided by the National Vulnerability Database (NVD)
AvayaCvlan
AvayaInteractive Response Version1.2.1
AvayaInteractive Response Version1.3
F5Icontrol Service Manager Version1.3
F5Icontrol Service Manager Version1.3.4
F5Icontrol Service Manager Version1.3.5
F5Icontrol Service Manager Version1.3.6
LibtiffLibtiff Version3.4
LibtiffLibtiff Version3.5.1
LibtiffLibtiff Version3.5.2
LibtiffLibtiff Version3.5.3
LibtiffLibtiff Version3.5.4
LibtiffLibtiff Version3.5.5
LibtiffLibtiff Version3.5.7
LibtiffLibtiff Version3.6.0
LibtiffLibtiff Version3.6.1
LibtiffLibtiff Version3.7.0
SgiPropack Version3.0
ConectivaLinux Version9.0
ConectivaLinux Version10.0
AvayaMn100
ApplemacOS X Version10.3
ApplemacOS X Version10.3.1
ApplemacOS X Version10.3.2
ApplemacOS X Version10.3.3
ApplemacOS X Version10.3.4
ApplemacOS X Version10.3.5
ApplemacOS X Version10.3.6
ApplemacOS X Version10.3.7
ApplemacOS X Version10.3.8
ApplemacOS X Version10.3.9
ApplemacOS X Server Version10.3
ApplemacOS X Server Version10.3.1
ApplemacOS X Server Version10.3.2
ApplemacOS X Server Version10.3.3
ApplemacOS X Server Version10.3.4
ApplemacOS X Server Version10.3.5
ApplemacOS X Server Version10.3.6
ApplemacOS X Server Version10.3.7
ApplemacOS X Server Version10.3.8
ApplemacOS X Server Version10.3.9
MandrakesoftMandrake Linux Version10.0
MandrakesoftMandrake Linux Version10.0 Editionamd64
MandrakesoftMandrake Linux Version10.1
MandrakesoftMandrake Linux Version10.1 Editionx86_64
MandrakesoftMandrake Linux Corporate Server Version3.0 Editionx86_64
ScoUnixware Version7.1.4
SunSolaris Version7.0 Editionx86
SunSolaris Version8.0 Editionx86
SunSolaris Version9.0 Editionsparc
SunSolaris Version9.0 Editionx86
SunSolaris Version9.0 Updatex86_update_2
SunSolaris Version10.0 Editionsparc
SunSolaris Version10.0 Editionx86
SunSunos Version5.7
SunSunos Version5.8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 5.11% 0.888
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P