CVE-2015-8665
- EPSS 0.21%
- Veröffentlicht 13.04.2016 17:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.
CVE-2015-1547
- EPSS 4.45%
- Veröffentlicht 13.04.2016 17:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (uninitialized memory access) via a crafted TIFF image, as demonstrated by libtiff5.tif.
CVE-2015-8783
- EPSS 0.66%
- Veröffentlicht 01.02.2016 21:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds reads) via a crafted TIFF image.
CVE-2015-8782
- EPSS 1.56%
- Veröffentlicht 01.02.2016 21:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds writes) via a crafted TIFF image, a different vulnerability than CVE-2015-8781.
CVE-2015-8781
- EPSS 2.09%
- Veröffentlicht 01.02.2016 21:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
tif_luv.c in libtiff allows attackers to cause a denial of service (out-of-bounds write) via an invalid number of samples per pixel in a LogL compressed TIFF image, a different vulnerability than CVE-2015-8782.
CVE-2015-8668
- EPSS 4.76%
- Veröffentlicht 08.01.2016 19:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.
CVE-2015-7554
- EPSS 0.67%
- Veröffentlicht 08.01.2016 19:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via crafted field data in an extension tag in a TIFF image.
- EPSS 1.17%
- Veröffentlicht 20.01.2015 15:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.
CVE-2013-4231
- EPSS 18.39%
- Veröffentlicht 19.01.2014 17:16:28
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF...
CVE-2013-4244
- EPSS 0.65%
- Veröffentlicht 28.09.2013 19:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a crafted GIF image.