Libtiff

Libtiff

258 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.94%
  • Published 06.07.2010 17:17:20
  • Last modified 11.04.2025 00:51:21

The TIFFReadDirectory function in LibTIFF 3.9.0 does not properly validate the data types of codec-specific tags that have an out-of-order position in a TIFF file, which allows remote attackers to cause a denial of service (application crash) via a c...

Exploit
  • EPSS 2.09%
  • Published 06.07.2010 17:17:20
  • Last modified 11.04.2025 00:51:21

LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly handle this during the second stage, which allows remote attackers to cause a denial of service (application crash) via a crafted fi...

Exploit
  • EPSS 1.61%
  • Published 06.07.2010 17:17:13
  • Last modified 11.04.2025 00:51:21

The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF file.

Exploit
  • EPSS 18.83%
  • Published 06.07.2010 17:17:13
  • Last modified 11.04.2025 00:51:21

LibTIFF 3.9.4 and earlier does not properly handle an invalid td_stripbytecount field, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted TIFF file, a different vulnerability than...

  • EPSS 1.27%
  • Published 06.07.2010 17:17:13
  • Last modified 11.04.2025 00:51:21

The TIFFRGBAImageGet function in LibTIFF 3.9.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a TIFF file with an invalid combination of SamplesPerPixel and Photometric values.

Exploit
  • EPSS 1.63%
  • Published 02.07.2010 12:43:53
  • Last modified 11.04.2025 00:51:21

The TIFFYCbCrtoRGB function in LibTIFF 3.9.0 and 3.9.2, as used in ImageMagick, does not properly handle invalid ReferenceBlackWhite values, which allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image that ...

Exploit
  • EPSS 1%
  • Published 02.07.2010 12:43:53
  • Last modified 11.04.2025 00:51:21

The OJPEGPostDecode function in tif_ojpeg.c in LibTIFF 3.9.0 and 3.9.2, as used in tiff2ps, allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted TIFF image, related to "downsampled OJPEG input."

Exploit
  • EPSS 3.31%
  • Published 02.07.2010 12:43:53
  • Last modified 11.04.2025 00:51:21

The TIFFVStripSize function in tif_strip.c in LibTIFF 3.9.0 and 3.9.2 makes incorrect calls to the TIFFGetField function, which allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image, related to "downsampled...

  • EPSS 2.37%
  • Published 02.07.2010 12:43:52
  • Last modified 11.04.2025 00:51:21

tif_getimage.c in LibTIFF 3.9.0 and 3.9.2 on 64-bit platforms, as used in ImageMagick, does not properly perform vertical flips, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a c...

  • EPSS 2.67%
  • Published 24.06.2010 17:30:01
  • Last modified 11.04.2025 00:51:21

The OJPEGReadBufferFill function in tif_ojpeg.c in LibTIFF before 3.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an OJPEG image with undefined strip offsets, related to the TIFFVGetFiel...