Back

HIGH

tiff2pdf buffer overflow

Published Jun 8, 2006

Description

Buffer overflow in the t2p_write_pdf_string function in tiff2pdf in libtiff 3.8.2 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TIFF file with a DocumentName tag that contains UTF-8 characters, which triggers the overflow when a character is sign extended to an integer that produces more digits than expected in an sprintf call.

Affected products

Remediation

Red Hat statement

This issue does not affect Red Hat Enterprise Linux 2.1 and 3 Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.

Metrics

Weaknesses (0)

No CWE recorded.

References (30)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner debian
Published Jun 8, 2006
Updated Aug 7, 2024
Reserved May 4, 2006
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jun 7, 2006