Vulnerability index

Browse CVEs

148 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libtiff CRITICAL 9.8
CVE-2016-9540

tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width. Reported as MSVR 35103, aka "cpStr…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9539

tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer(). Reported as MSVR 35092.

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9538

tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9537

tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097.

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9536

tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip(). Reported as MSVR 350…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9535

tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mo…

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9534

tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported …

Patch available
Fix from $2,300 2016-11-22
Libtiff CRITICAL 9.8
CVE-2016-9533

tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDi…

Patch available
Fix from $2,300 2016-11-22
Libtiff HIGH 8.1
CVE-2016-8331EPSS 7%

An exploitable remote code execution vulnerability exists in the handling of TIFF images in LibTIFF version 4.0.6. A crafted TIFF document can lead t…

No fix yet
Fix from $1,950 2016-10-28
Libtiff HIGH 7.5
CVE-2016-3658

The TIFFWriteDirectoryTagLongLong8Array function in tif_dirwrite.c in the tiffset tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause …

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3634

The tagCompare function in tif_dirinfo.c in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3633

The setrow function in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via …

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3631

The (1) cpStrips and (2) cpTiles functions in the thumbnail tool in LibTIFF 4.0.6 and earlier allow remote attackers to cause a denial of service (ou…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff MEDIUM 6.5
CVE-2016-3625

tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted T…

Fix: after 4.0.6
Fix from $1,600 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3624

The cvtClump function in the rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) b…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3623EPSS 6%

The rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero) by setting the (1) v or (2) h p…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff MEDIUM 6.5
CVE-2016-3622

The fpAcc function in tif_predict.c in the tiff2rgba tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-b…

No fix yet
Fix from $1,600 2016-10-03
Libtiff HIGH 8.8
CVE-2016-3621

The LZWEncode function in tif_lzw.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c lzw" option is used, allows remote attackers to c…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff HIGH 7.5
CVE-2016-3620

The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to c…

Fix: after 4.0.6
Fix from $1,950 2016-10-03
Libtiff MEDIUM 6.5
CVE-2016-3619

The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used, allows remote att…

No fix yet
Fix from $1,600 2016-10-03
Libtiff HIGH 7.8
CVE-2016-3990

Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a de…

Fix: after 4.0.6
Fix from $1,950 2016-09-21
Libtiff HIGH 7.8
CVE-2016-3945

Multiple integer overflows in the (1) cvt_by_strip and (2) cvt_by_tile functions in the tiff2rgba tool in LibTIFF 4.0.6 and earlier, when -b mode is …

Fix: after 4.0.6
Fix from $1,950 2016-09-21
Libtiff HIGH 7.8
CVE-2016-3632

The _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) …

Fix: after 4.0.6
Fix from $1,950 2016-09-21
Libtiff MEDIUM 5.5
CVE-2015-8665

tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image.

Mitigation only
Fix from $1,600 2016-04-13
Libtiff CRITICAL 9.8
CVE-2015-7554

The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly …

No fix yet
Fix from $2,300 2016-01-08
Libtiff MEDIUM 5.0
CVE-2014-9330

Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, re…

Mitigation only
Fix from $1,600 2015-01-20
Libtiff MEDIUM 6.8
CVE-2013-4244

The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds…

Fix: after 4.0.3
Fix from $1,600 2013-09-28
Libtiff MEDIUM 6.8
CVE-2012-5581

Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute ar…

Fix: after 4.0.1
Fix from $1,600 2013-01-04
Libtiff MEDIUM 6.8
CVE-2012-4447EPSS 7%

Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and pos…

Fix: after 4.0.2
Fix from $1,600 2012-10-28
Libtiff MEDIUM 6.8
CVE-2012-3401

The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct point…

Fix: after 4.0.2
Fix from $1,600 2012-08-13