Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Clay Wood

#40899de 53,634
6.5CVSS total
Vulnerabilidades · 1
PT-2016-1268
6.5
2016-02-01
Libtiff · Libtiff · CVE-2015-8781
**Name of the Vulnerable Software and Affected Versions** LibTIFF (affected versions not specified) **Description** The issue is caused by a buffer overflow in the tif luv.c function of the LibTIFF library. This can be exploited by a remote attacker using a specially crafted, compressed TIFF image, potentially leading to a denial of service due to out-of-bounds writing. The vulnerability is triggered by an invalid number of samples per pixel in a LogL compressed TIFF image. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.