CVE-2023-0803
- EPSS 0.03%
- Veröffentlicht 13.02.2023 23:15:12
- Zuletzt bearbeitet 21.03.2025 19:15:42
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3516, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
CVE-2023-0804
- EPSS 0.02%
- Veröffentlicht 13.02.2023 23:15:12
- Zuletzt bearbeitet 21.03.2025 15:15:39
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3609, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
CVE-2023-0795
- EPSS 0.01%
- Veröffentlicht 13.02.2023 23:15:11
- Zuletzt bearbeitet 21.03.2025 19:15:41
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3488, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
CVE-2023-0796
- EPSS 0.01%
- Veröffentlicht 13.02.2023 23:15:11
- Zuletzt bearbeitet 21.03.2025 19:15:41
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3592, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
CVE-2023-0797
- EPSS 0.01%
- Veröffentlicht 13.02.2023 23:15:11
- Zuletzt bearbeitet 21.03.2025 19:15:41
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in libtiff/tif_unix.c:368, invoked by tools/tiffcrop.c:2903 and tools/tiffcrop.c:6921, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from so...
CVE-2022-48281
- EPSS 0.01%
- Veröffentlicht 23.01.2023 03:15:09
- Zuletzt bearbeitet 03.04.2025 14:15:23
processCropSelections in tools/tiffcrop.c in LibTIFF through 4.5.0 has a heap-based buffer overflow (e.g., "WRITE of size 307203") via a crafted TIFF image.
CVE-2022-3970
- EPSS 0.11%
- Veröffentlicht 13.11.2022 08:15:16
- Zuletzt bearbeitet 21.11.2024 07:20:38
A vulnerability was found in LibTIFF. It has been classified as critical. This affects the function TIFFReadRGBATileExt of the file libtiff/tif_getimage.c. The manipulation leads to integer overflow. It is possible to initiate the attack remotely. Th...
CVE-2022-3598
- EPSS 0.04%
- Veröffentlicht 21.10.2022 16:15:11
- Zuletzt bearbeitet 07.05.2025 21:15:56
LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with co...
CVE-2022-3599
- EPSS 0.04%
- Veröffentlicht 21.10.2022 16:15:11
- Zuletzt bearbeitet 07.05.2025 21:15:56
LibTIFF 4.4.0 has an out-of-bounds read in writeSingleSection in tools/tiffcrop.c:7345, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
CVE-2022-3626
- EPSS 0.04%
- Veröffentlicht 21.10.2022 16:15:11
- Zuletzt bearbeitet 07.05.2025 16:15:20
LibTIFF 4.4.0 has an out-of-bounds write in _TIFFmemset in libtiff/tif_unix.c:340 when called from processCropSelections, tools/tiffcrop.c:7619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff f...