MEDIUM
libtiff: DoS or possible arbitrary code execution via crafted TIFF image
Published Sep 28, 2010
6.8
MEDIUMCVSS 2.0
EPSS 3.24%
Description
LibTIFF before 3.9.2-5.2.1 in SUSE openSUSE 11.3 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted TIFF image.
Affected products
No data.
No data.
Red Hat Enterprise Linux 4
libtiff
Not affected
Red Hat Enterprise Linux 5
libtiff
Not affected
Red Hat Enterprise Linux 6
libtiff
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 4 | libtiff | Not affected | n/a |
| Red Hat Enterprise Linux 5 | libtiff | Not affected | n/a |
| Red Hat Enterprise Linux 6 | libtiff | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (2)
References (10)
- http://blackberry.com/btsc/KB27244 x_refsource_CONFIRM
- http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html vendor-advisoryx_refsource_SUSE
- http://secunia.com/advisories/50726 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-201209-02.xml vendor-advisoryx_refsource_GENTOO
- http://support.novell.com/security/cve/CVE-2010-3087.html x_refsource_CONFIRM
- https://access.redhat.com/security/cve/CVE-2010-3087 Vendor Advisory
- https://bugzilla.novell.com/show_bug.cgi?id=624215 x_refsource_CONFIRM
- https://bugzilla.redhat.com/show_bug.cgi?id=638301 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2010-3087
- https://www.cve.org/CVERecord?id=CVE-2010-3087
| Link | Providers | Tags |
|---|---|---|
| http://blackberry.com/btsc/KB27244 | x_refsource_CONFIRM | |
| http://lists.opensuse.org/opensuse-security-announce/2010-09/msg00006.html | vendor-advisoryx_refsource_SUSE | |
| http://secunia.com/advisories/50726 | third-party-advisoryx_refsource_SECUNIA | |
| http://security.gentoo.org/glsa/glsa-201209-02.xml | vendor-advisoryx_refsource_GENTOO | |
| http://support.novell.com/security/cve/CVE-2010-3087.html | x_refsource_CONFIRM | |
| https://access.redhat.com/security/cve/CVE-2010-3087 | Vendor Advisory | |
| https://bugzilla.novell.com/show_bug.cgi?id=624215 | x_refsource_CONFIRM | |
| https://bugzilla.redhat.com/show_bug.cgi?id=638301 | Issue Tracking | |
| https://nvd.nist.gov/vuln/detail/CVE-2010-3087 | ||
| https://www.cve.org/CVERecord?id=CVE-2010-3087 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Sep 28, 2010
Updated Aug 7, 2024
Reserved Aug 20, 2010
Link CVE-2010-3087
CISA Vulnrichment
Updated n/a