Total vulnerabilities in the database
The _TIFFmalloc function in tif_unix.c in LibTIFF 4.0.3 does not reject a zero size, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image that is mishandled by the TIFFWriteScanline function in tif_write.c, as demonstrated by tiffdither.
Software | From | Fixed in |
---|---|---|
libtiff / libtiff | 4.0.3 | 4.0.3.x |
redhat / enterprise_linux_desktop | 7.0 | 7.0.x |
redhat / enterprise_linux_server_aus | 7.2 | 7.2.x |
redhat / enterprise_linux_workstation | 7.0 | 7.0.x |
redhat / enterprise_linux_server_tus | 7.2 | 7.2.x |
redhat / enterprise_linux_server | 7.0 | 7.0.x |
redhat / enterprise_linux_server_eus | 7.2 | 7.2.x |
redhat / enterprise_linux_desktop | 6.0 | 6.0.x |
redhat / enterprise_linux_server | 6.0 | 6.0.x |
redhat / enterprise_linux_workstation | 6.0 | 6.0.x |
redhat / enterprise_linux_server_tus | 7.3 | 7.3.x |
redhat / enterprise_linux_server_aus | 7.3 | 7.3.x |
redhat / enterprise_linux_server_aus | 7.4 | 7.4.x |
redhat / enterprise_linux_server_eus | 7.3 | 7.3.x |
redhat / enterprise_linux_server_eus | 7.4 | 7.4.x |
apple / mac_os_x | 10.10.0 | 10.10.0.x |
apple / mac_os_x | 10.10.1 | 10.10.1.x |
apple / mac_os_x | 10.9.5 | 10.9.5.x |
apple / mac_os_x | 10.10.3 | 10.10.3.x |
apple / mac_os_x | 10.10.2 | 10.10.2.x |
apple / mac_os_x | 10.8.5 | 10.8.5.x |
apple / iphone_os | - | - |