Vulnerability index

Browse CVEs

148 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libtiff HIGH 7.8
CVE-2017-7602

LibTIFF 4.0.7 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly have uns…

Patch available
Fix from $1,950 2017-04-09
Libtiff MEDIUM 5.5
CVE-2017-7593

tif_read.c in LibTIFF 4.0.7 does not ensure that tif_rawdata is properly initialized, which might allow remote attackers to obtain sensitive informat…

Mitigation only
Fix from $1,600 2017-04-09
Libtiff MEDIUM 5.5
CVE-2017-7594

The OJPEGReadHeaderInfoSecTablesDcTable function in tif_ojpeg.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (memory leak) v…

Mitigation only
Fix from $1,600 2017-04-09
Libtiff MEDIUM 5.5
CVE-2017-7595

The JPEGSetupEncode function in tiff_jpeg.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and applicati…

Patch available
Fix from $1,600 2017-04-09
Libtiff HIGH 7.8
CVE-2016-10268

tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (integer underflow and heap-based buffer under-read) or possibly…

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10269

LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6 and 4.0.7 allows remote attacke…

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10270

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a craf…

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10271

tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly …

Patch available
Fix from $1,950 2017-03-24
Libtiff HIGH 7.8
CVE-2016-10272

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a craft…

Patch available
Fix from $1,950 2017-03-24
Libtiff MEDIUM 5.5
CVE-2016-10266

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image, related to …

Patch available
Fix from $1,600 2017-03-24
Libtiff MEDIUM 5.5
CVE-2016-10267

LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image, related to …

Patch available
Fix from $1,600 2017-03-24
Libtiff MEDIUM 5.5
CVE-2015-7313

LibTIFF before 4.0.7 allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted tiff file.

Fix: 4.0.7+
Fix from $1,600 2017-03-17
Libtiff HIGH 7.8
CVE-2016-10092

Heap-based buffer overflow in the readContigStripsIntoBuffer function in tif_unix.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4,…

Patch available
Fix from $1,950 2017-03-01
Libtiff HIGH 7.8
CVE-2016-10093

Integer overflow in tools/tiffcp.c in LibTIFF 4.0.7, 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0…

Patch available
Fix from $1,950 2017-03-01
Libtiff HIGH 7.8
CVE-2016-10094

Off-by-one error in the t2p_readwrite_pdf_image_tile function in tools/tiff2pdf.c in LibTIFF 4.0.7 allows remote attackers to have unspecified impact…

Patch available
Fix from $1,950 2017-03-01
Libtiff MEDIUM 5.5
CVE-2016-10095

Stack-based buffer overflow in the _TIFFVGetField function in tif_dir.c in LibTIFF 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4…

No fix yet
Fix from $1,600 2017-03-01
Libtiff MEDIUM 5.5
CVE-2016-5102

Buffer overflow in the readgifimage function in gif2tiff.c in the gif2tiff tool in LibTIFF 4.0.6 allows remote attackers to cause a denial of service…

Fix: after 4.0.6
Fix from $1,600 2017-02-06
Libtiff HIGH 7.5
CVE-2016-9448

The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) by setting…

Mitigation only
Fix from $1,950 2017-01-27
Libtiff CRITICAL 9.1
CVE-2016-6223

The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of service (cras…

Fix: after 4.0.6
Fix from $2,300 2017-01-23
Libtiff HIGH 8.8
CVE-2017-5563

LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image to tools…

Mitigation only
Fix from $1,950 2017-01-23
Libtiff HIGH 7.5
CVE-2016-5323EPSS 6%

The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application cra…

Fix: after 4.0.6
Fix from $1,950 2017-01-20
Libtiff MEDIUM 6.5
CVE-2016-5316

Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application by…

Fix: after 4.0.6
Fix from $1,600 2017-01-20
Libtiff MEDIUM 6.5
CVE-2016-5317

Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, …

Mitigation only
Fix from $1,600 2017-01-20
Libtiff MEDIUM 6.5
CVE-2016-5318

Stack-based buffer overflow in the _TIFFVGetField function in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafte…

Fix: after 4.0.6
Fix from $1,600 2017-01-20
Libtiff MEDIUM 6.5
CVE-2016-5319

Heap-based buffer overflow in tif_packbits.c in libtiff 4.0.6 and earlier allows remote attackers to crash the application via a crafted bmp file.

Fix: after 4.0.6
Fix from $1,600 2017-01-20
Libtiff HIGH 7.5
CVE-2016-9297EPSS 6%

The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C1…

Patch available
Fix from $1,950 2017-01-18
Libtiff MEDIUM 5.5
CVE-2016-9273

tiffsplit in libtiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file, related to changing td_nstri…

Mitigation only
Fix from $1,600 2017-01-18
Libtiff HIGH 8.8
CVE-2017-5225

LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSample valu…

Patch available
Fix from $1,950 2017-01-12
Libtiff HIGH 7.0
CVE-2016-5652

An exploitable heap-based buffer overflow exists in the handling of TIFF images in LibTIFF's TIFF2PDF tool. A crafted TIFF document can lead to a hea…

No fix yet
Fix from $1,950 2017-01-06
Libtiff HIGH 7.4
CVE-2015-8870

Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or p…

Fix: after 4.0.3
Fix from $1,950 2016-12-06