Vulnerability index

Browse CVEs

40 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Libtiff HIGH 8.1
CVE-2016-8331EPSS 7%

An exploitable remote code execution vulnerability exists in the handling of TIFF images in LibTIFF version 4.0.6. A crafted TIFF document can lead t…

No fix yet
Fix from $1,950 2016-10-28
Libtiff MEDIUM 6.5
CVE-2016-3622

The fpAcc function in tif_predict.c in the tiff2rgba tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-b…

No fix yet
Fix from $1,600 2016-10-03
Libtiff MEDIUM 6.5
CVE-2016-3619

The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used, allows remote att…

No fix yet
Fix from $1,600 2016-10-03
Libtiff MEDIUM 5.5
CVE-2015-8665

tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.

Mitigation only
Fix from $1,600 2016-04-13
Libtiff CRITICAL 9.8
CVE-2015-7554

The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly …

No fix yet
Fix from $2,300 2016-01-08
Libtiff MEDIUM 5.0
CVE-2014-9330

Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, re…

Mitigation only
Fix from $1,600 2015-01-20
Libtiff MEDIUM 6.8
CVE-2012-1173EPSS 7%

Multiple integer overflows in tiff_getimage.c in LibTIFF 3.9.4 allow remote attackers to execute arbitrary code via a crafted tile size in a TIFF fil…

Mitigation only
Fix from $1,600 2012-06-04
Libtiff MEDIUM 6.8
CVE-2010-3087

LibTIFF before 3.9.2-5.2.1 in SUSE openSUSE 11.3 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitra…

Mitigation only
Fix from $1,600 2010-09-28
Libtiff MEDIUM 5.0
CVE-2006-0405

The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 allows remote attackers to cause a denial of service (application crash) via a craf…

Mitigation only
Fix from $1,600 2006-01-25
Libtiff MEDIUM 5.0
CVE-2005-2452

libtiff up to 3.7.0 allows remote attackers to cause a denial of service (application crash) via a TIFF image header with a zero "YCbCr subsampling" …

Mitigation only
Fix from $1,600 2005-08-03