Back

HIGH

libtiff: Stack-based buffer overflow in _TIFFVGetField

Published Mar 1, 2017

Description

Stack-based buffer overflow in the _TIFFVGetField function in tif_dir.c in LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7 and 4.0.8 allows remote attackers to cause a denial of service (crash) via a crafted TIFF file.

Affected products

Remediation

Red Hat statement

This flaw was found to be a duplicate of CVE-2015-7554. Please see https://access.redhat.com/security/cve/CVE-2015-7554 for information about affected products and security errata.

Metrics

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 1, 2017
Updated Aug 6, 2024
Reserved Jan 1, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date Dec 4, 2016