Search CVE reports
11 – 20 of 277 results
An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a...
5 affected packages
tiff, qtwebengine-opensource-src, texmaker, gdal, neuron
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Ignored | Ignored | Ignored |
qtwebengine-opensource-src | — | Ignored | Ignored | Ignored |
texmaker | — | Ignored | Ignored | Ignored |
gdal | — | Not affected | Not affected | Not affected |
neuron | — | Ignored | Ignored | Ignored |
Some fixes available 9 of 35
An issue was found in the tiffcp utility distributed by the libtiff package where a crafted TIFF file on processing may cause a heap-based buffer overflow leads to an application crash.
4 affected packages
libgeotiff, libtk-img, povray, tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libgeotiff | Needs evaluation | Needs evaluation | Needs evaluation | Ignored |
libtk-img | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
povray | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
tiff | Fixed | Fixed | Fixed | Fixed |
Some fixes available 6 of 7
An out-of-memory flaw was found in libtiff. Passing a crafted tiff file to TIFFOpen() API may allow a remote attacker to cause a denial of service via a craft input with size smaller than 379 KB.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | Not affected | Fixed | Fixed | Fixed |
Some fixes available 7 of 9
A heap-buffer-overflow vulnerability was found in LibTIFF, in extractImageSection() at tools/tiffcrop.c:7916 and tools/tiffcrop.c:7801. This flaw allows attackers to cause a denial of service via a crafted tiff file.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | Fixed | Fixed | Fixed | Fixed |
A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial of service or possibly execute an arbitrary code via a crafted tiff image, which...
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Not affected | Not affected | Not affected |
LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute an arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Not affected | Not affected | Not affected |
Some fixes available 5 of 7
A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pass a crafted TIFF image file to tiffcrop utility, which causes this memory leak...
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Fixed | Fixed | Fixed |
An issue was discovered in function TIFFReadDirectory libtiff before 4.4.0 allows attackers to cause a denial of service via crafted TIFF file.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Fixed | Fixed | Fixed |
There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Not affected | Not affected | Not affected |
Rejected reason: Not a Security Issue.
1 affected package
tiff
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
tiff | — | Fixed | Fixed | Fixed |