Vulnerability index

Browse CVEs

40 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Libtiff MEDIUM 5.5
CVE-2020-18768

There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a…

No fix yet
Fix from $1,600 2023-08-22
Libtiff HIGH 8.8
CVE-2023-25434

libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215.

No fix yet
Fix from $1,950 2023-06-14
Libtiff MEDIUM 5.5
CVE-2023-30775

A vulnerability was found in the libtiff library. This security flaw causes a heap buffer overflow in extractContigSamples32bits, tiffcrop.c.

Mitigation only
Fix from $1,600 2023-05-19
Libtiff MEDIUM 5.5
CVE-2023-30086

Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiffcp function in tiffcp.c.

No fix yet
Fix from $1,600 2023-05-09
Libtiff MEDIUM 5.5
CVE-2022-34266

The libtiff-4.0.3-35.amzn2.0.1 package for LibTIFF on Amazon Linux 2 allows attackers to cause a denial of service (application crash), a different v…

Mitigation only
Fix from $1,600 2022-07-19
Libtiff MEDIUM 6.5
CVE-2022-1210

A vulnerability classified as problematic was found in LibTIFF 4.3.0. Affected by this vulnerability is the TIFF File Handler of tiff2ps. Opening a m…

No fix yet
Fix from $1,600 2022-04-03
Libtiff HIGH 8.8
CVE-2018-17795

The function t2p_write_pdf in tiff2pdf.c in LibTIFF 4.0.9 and earlier allows remote attackers to cause a denial of service (heap-based buffer overflo…

No fix yet
Fix from $1,950 2018-09-30
Libtiff MEDIUM 6.5
CVE-2018-10801

TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff.

No fix yet
Fix from $1,600 2018-05-08
Libtiff MEDIUM 6.5
CVE-2018-10126

ijg-libjpeg before 9d, as used in tiff2pdf (from LibTIFF) and other products, does not check for a NULL pointer at a certain place in jpeg_fdct_16x16…

No fix yet
Fix from $1,600 2018-04-21
Libtiff HIGH 8.8
CVE-2017-17973

In LibTIFF 4.0.8, there is a heap-based use-after-free in the t2p_writeproc function in tiff2pdf.c. NOTE: there is a third-party report of inability …

No fix yet
Fix from $1,950 2017-12-29
Libtiff HIGH 8.8
CVE-2017-17942

In LibTIFF 4.0.9, there is a heap-based buffer over-read in the function PackBitsEncode in tif_packbits.c.

No fix yet
Fix from $1,950 2017-12-28
Libtiff HIGH 8.8
CVE-2017-17095EPSS 11%

tools/pal2rgb.c in pal2rgb in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (TIFFSetupStrips heap-based buffer overflow and appl…

No fix yet
Fix from $1,950 2017-12-02
Libtiff MEDIUM 6.5
CVE-2017-13726

There is a reachable assertion abort in the function TIFFWriteDirectorySec() in LibTIFF 4.0.8, related to tif_dirwrite.c and a SubIFD tag. A crafted …

Mitigation only
Fix from $1,600 2017-08-29
Libtiff MEDIUM 6.5
CVE-2017-13727

There is a reachable assertion abort in the function TIFFWriteDirectoryTagSubifd() in LibTIFF 4.0.8, related to tif_dirwrite.c and a SubIFD tag. A cr…

Mitigation only
Fix from $1,600 2017-08-29
Libtiff HIGH 7.5
CVE-2017-12944

The TIFFReadDirEntryArray function in tif_read.c in LibTIFF 4.0.8 mishandles memory allocation for short files, which allows remote attackers to caus…

Mitigation only
Fix from $1,950 2017-08-18
Libtiff MEDIUM 6.5
CVE-2017-11613

In LibTIFF 4.0.8, there is a denial of service vulnerability in the TIFFOpen function. A crafted input will lead to a denial of service attack. Durin…

Mitigation only
Fix from $1,600 2017-07-26
Libtiff HIGH 8.8
CVE-2017-11335

There is a heap based buffer overflow in tools/tiff2pdf.c of LibTIFF 4.0.8 via a PlanarConfig=Contig image, which causes a more than one hundred byte…

Mitigation only
Fix from $1,950 2017-07-17
Libtiff HIGH 7.5
CVE-2017-10688EPSS 7%

In LibTIFF 4.0.8, there is a assertion abort in the TIFFWriteDirectoryTagCheckedLong8Array function in tif_dirwrite.c. A crafted input will lead to a…

No fix yet
Fix from $1,950 2017-06-29
Libtiff MEDIUM 6.5
CVE-2014-8127EPSS 6%

LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted TIFF image to the (1) checkInkNamesSt…

Mitigation only
Fix from $1,600 2017-06-26
Libtiff MEDIUM 6.5
CVE-2017-9147EPSS 7%

LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash…

No fix yet
Fix from $1,600 2017-05-22
Libtiff MEDIUM 5.5
CVE-2016-10371

The TIFFWriteDirectoryTagCheckedRational function in tif_dirwrite.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (assertion …

Mitigation only
Fix from $1,600 2017-05-10
Libtiff HIGH 7.8
CVE-2017-7592

The putagreytile function in tif_getimage.c in LibTIFF 4.0.7 has a left-shift undefined behavior issue, which might allow remote attackers to cause a…

Mitigation only
Fix from $1,950 2017-04-09
Libtiff MEDIUM 5.5
CVE-2017-7593

tif_read.c in LibTIFF 4.0.7 does not ensure that tif_rawdata is properly initialized, which might allow remote attackers to obtain sensitive informat…

Mitigation only
Fix from $1,600 2017-04-09
Libtiff MEDIUM 5.5
CVE-2017-7594

The OJPEGReadHeaderInfoSecTablesDcTable function in tif_ojpeg.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (memory leak) v…

Mitigation only
Fix from $1,600 2017-04-09
Libtiff MEDIUM 5.5
CVE-2016-10095

Stack-based buffer overflow in the _TIFFVGetField function in tif_dir.c in LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4…

No fix yet
Fix from $1,600 2017-03-01
Libtiff HIGH 7.5
CVE-2016-9448

The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting…

Mitigation only
Fix from $1,950 2017-01-27
Libtiff HIGH 8.8
CVE-2017-5563

LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image to tools…

Mitigation only
Fix from $1,950 2017-01-23
Libtiff MEDIUM 6.5
CVE-2016-5317

Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, …

Mitigation only
Fix from $1,600 2017-01-20
Libtiff MEDIUM 5.5
CVE-2016-9273

tiffsplit in libtiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file, related to changing td_nstri…

Mitigation only
Fix from $1,600 2017-01-18
Libtiff HIGH 7.0
CVE-2016-5652

An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a hea…

No fix yet
Fix from $1,950 2017-01-06