Back

MEDIUM

libtiff: crash when reading image with not configured compression

Published Jul 1, 2010

Description

LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows remote attackers to cause a denial of service via a crafted TIFF image, related to "downsampled OJPEG input."

Affected products

Remediation

No remediation recorded yet.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 1, 2010
Updated Aug 7, 2024
Reserved Jul 1, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jun 10, 2010