Vulnerability index

Browse CVEs

148 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2016-9540 tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width. Reported as MSVR 35103, aka "cpStr… Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9539 tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer(). Reported as MSVR 35092. Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9538 tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow. Reported as MSVR 35… Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9537 tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers. Reported as MSVR 35093, MSVR 35096, and MSVR 35097. Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9536 tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip(). Reported as MSVR 350… Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9535 tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mo… Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9534 tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members. Reported … Libtiff Patch available Fix from $2,3002016-11-22 CRITICAL 9.8 CVE-2016-9533 tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers. Reported as MSVR 35094, aka "PixarLog horizontalDi… Libtiff Patch available Fix from $2,3002016-11-22 HIGH 8.1 CVE-2016-8331EPSS 7% An exploitable remote code execution vulnerability exists in the handling of TIFF images in LibTIFF version 4.0.6. A crafted TIFF document can lead t… Libtiff No fix yet Fix from $1,9502016-10-28 HIGH 7.5 CVE-2016-3658 The TIFFWriteDirectoryTagLongLong8Array function in tif_dirwrite.c in the tiffset tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause … Libtiff after 4.0.6 Fix from $1,9502016-10-03 HIGH 7.5 CVE-2016-3634 The tagCompare function in tif_dirinfo.c in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out… Libtiff after 4.0.6 Fix from $1,9502016-10-03 HIGH 7.5 CVE-2016-3633 The setrow function in the thumbnail tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via … Libtiff after 4.0.6 Fix from $1,9502016-10-03 HIGH 7.5 CVE-2016-3631 The (1) cpStrips and (2) cpTiles functions in the thumbnail tool in LibTIFF 4.0.6 and earlier allow remote attackers to cause a denial of service (ou… Libtiff after 4.0.6 Fix from $1,9502016-10-03 MEDIUM 6.5 CVE-2016-3625 tif_read.c in the tiff2bw tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted T… Libtiff after 4.0.6 Fix from $1,6002016-10-03 HIGH 7.5 CVE-2016-3624 The cvtClump function in the rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) b… Libtiff after 4.0.6 Fix from $1,9502016-10-03 HIGH 7.5 CVE-2016-3623EPSS 6% The rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero) by setting the (1) v or (2) h p… Libtiff after 4.0.6 Fix from $1,9502016-10-03 MEDIUM 6.5 CVE-2016-3622 The fpAcc function in tif_predict.c in the tiff2rgba tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-b… Libtiff No fix yet Fix from $1,6002016-10-03 HIGH 8.8 CVE-2016-3621 The LZWEncode function in tif_lzw.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c lzw" option is used, allows remote attackers to c… Libtiff after 4.0.6 Fix from $1,9502016-10-03 HIGH 7.5 CVE-2016-3620 The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to c… Libtiff after 4.0.6 Fix from $1,9502016-10-03 MEDIUM 6.5 CVE-2016-3619 The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used, allows remote att… Libtiff No fix yet Fix from $1,6002016-10-03 HIGH 7.8 CVE-2016-3990 Heap-based buffer overflow in the horizontalDifference8 function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a de… Libtiff after 4.0.6 Fix from $1,9502016-09-21 HIGH 7.8 CVE-2016-3945 Multiple integer overflows in the (1) cvt_by_strip and (2) cvt_by_tile functions in the tiff2rgba tool in LibTIFF 4.0.6 and earlier, when -b mode is … Libtiff after 4.0.6 Fix from $1,9502016-09-21 HIGH 7.8 CVE-2016-3632 The _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) … Libtiff after 4.0.6 Fix from $1,9502016-09-21 MEDIUM 5.5 CVE-2015-8665 tif_getimage.c in LibTIFF 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via the SamplesPerPixel tag in a TIFF image. Libtiff Mitigation only Fix from $1,6002016-04-13 CRITICAL 9.8 CVE-2015-7554 The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly … Libtiff No fix yet Fix from $2,3002016-01-08 MEDIUM 5.0 CVE-2014-9330 Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, re… Libtiff Mitigation only Fix from $1,6002015-01-20 MEDIUM 6.8 CVE-2013-4244 The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds… Libtiff after 4.0.3 Fix from $1,6002013-09-28 MEDIUM 6.8 CVE-2012-5581 Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute ar… Libtiff after 4.0.1 Fix from $1,6002013-01-04 MEDIUM 6.8 CVE-2012-4447EPSS 7% Heap-based buffer overflow in tif_pixarlog.c in LibTIFF before 4.0.3 allows remote attackers to cause a denial of service (application crash) and pos… Libtiff after 4.0.2 Fix from $1,6002012-10-28 MEDIUM 6.8 CVE-2012-3401 The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct point… Libtiff after 4.0.2 Fix from $1,6002012-08-13