MEDIUM
libtiff: SubjectDistance EXIF tag reading stack based buffer overflow
Published Jun 23, 2010
6.8
MEDIUMCVSS 2.0
EPSS 4.78%
Description
Stack-based buffer overflow in the TIFFFetchSubjectDistance function in tif_dirread.c in LibTIFF before 3.9.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long EXIF SubjectDistance field in a TIFF file.
Affected products
No data.
Configuration 2
OR
- 6.06
- 8.04
- 9.04
- 9.10
- 10.04
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Red Hat statement
Not vulnerable. These issues did not affect the versions of libtiff as shipped with Red Hat Enterprise Linux 3, 4, or 5.
Weaknesses (2)
References (17)
- http://bugzilla.maptools.org/show_bug.cgi?id=2212 x_refsource_CONFIRMIssue TrackingThird Party Advisory
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=874 third-party-advisoryx_refsource_IDEFENSEBroken Link
- http://lists.opensuse.org/opensuse-security-announce/2010-08/msg00001.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://marc.info/?l=oss-security&m=127731610612908&w=2 mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- http://osvdb.org/65676 vdb-entryx_refsource_OSVDBBroken Link
- http://secunia.com/advisories/40241 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/40381 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://secunia.com/advisories/50726 third-party-advisoryx_refsource_SECUNIAThird Party Advisory
- http://security.gentoo.org/glsa/glsa-201209-02.xml vendor-advisoryx_refsource_GENTOOThird Party Advisory
- http://slackware.com/security/viewer.php?l=slackware-security&y=2010&m=slackware-security.596424 vendor-advisoryx_refsource_SLACKWAREThird Party Advisory
- http://www.remotesensing.org/libtiff/v3.9.4.html x_refsource_CONFIRMBroken Link
- http://www.ubuntu.com/usn/USN-954-1 vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- http://www.vupen.com/english/advisories/2010/1638 vdb-entryx_refsource_VUPENThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2010-2067 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=599576 x_refsource_CONFIRMIssue TrackingThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2010-2067
- https://www.cve.org/CVERecord?id=CVE-2010-2067
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jun 23, 2010
Updated Aug 7, 2024
Reserved May 25, 2010
Link CVE-2010-2067
CISA Vulnrichment
Updated n/a