Libtiff

Libtiff

265 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 4.19%
  • Veröffentlicht 08.01.2016 19:59:06
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via crafted field data in an extension tag in a TIFF image.

  • EPSS 4.13%
  • Veröffentlicht 20.01.2015 15:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.

  • EPSS 7.4%
  • Veröffentlicht 19.01.2014 17:16:28
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple buffer overflows in libtiff before 4.0.3 allow remote attackers to cause a denial of service (out-of-bounds write) via a crafted (1) extension block in a GIF image or (2) GIF raster image to tools/gif2tiff.c or (3) a long filename for a TIFF...

  • EPSS 2.7%
  • Veröffentlicht 28.09.2013 19:55:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a crafted GIF image.

  • EPSS 5.02%
  • Veröffentlicht 10.09.2013 19:55:11
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.

  • EPSS 7.17%
  • Veröffentlicht 10.09.2013 19:55:11
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Heap-based buffer overflow in the readgifimage function in the gif2tiff tool in libtiff 4.0.3 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted height and width values in a GIF ...

  • EPSS 4.25%
  • Veröffentlicht 04.01.2013 22:55:02
  • Zuletzt bearbeitet 16.06.2026 23:47:02

Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DOTRANGE tag in a TIFF image.

Exploit
  • EPSS 13.52%
  • Veröffentlicht 11.11.2012 13:00:58
  • Zuletzt bearbeitet 16.06.2026 23:45:24

ppm2tiff does not check the return value of the TIFFScanlineSize function, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PPM image that triggers an integer overflow, a zero-memory...

  • EPSS 6.73%
  • Veröffentlicht 28.10.2012 15:55:01
  • Zuletzt bearbeitet 16.06.2026 23:45:07

Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF image using the PixarLog Compression format.

  • EPSS 4.07%
  • Veröffentlicht 13.08.2012 20:55:08
  • Zuletzt bearbeitet 16.06.2026 23:43:08

The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct pointer in certain error conditions, which allows context-dependent attackers to cause a denial of service...