Back

CRITICAL

libtiff: Integer overflow leads to reading undefined buffer in readContigStripsIntoBuffer()

Published Nov 22, 2016

Description

tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35100.

Affected products

Remediation

Red Hat statement

This is an Out-of-bounds read flaw in the libtiff library. A specially-crafted image can cause an application linked with the libtiff library to crash.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Nov 22, 2016
Updated Aug 6, 2024
Reserved Nov 21, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Oct 8, 2016