Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.
| Software | From | Fixed in |
|---|---|---|
| libtiff / libtiff | 4.0.3 | 4.0.3.x |
| debian / debian_linux | 6.0 | 6.0.x |
| debian / debian_linux | 7.0 | 7.0.x |