The TIFFRGBAImageGet function in LibTIFF 3.9.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a TIFF file with an invalid combination of SamplesPerPixel and Photometric values.
Software | From | Fixed in |
---|---|---|
libtiff / libtiff | 3.9.0 | 3.9.0.x |