Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Zzf

Pesquisador deAlibaba
#45033de 53,630
5.5CVSS total
Vulnerabilidades · 1
PT-2015-3230
5.5
2015-12-31
Libtiff · Libtiff · CVE-2015-8683
**Name of the Vulnerable Software and Affected Versions** LibTIFF version 4.0.6 **Description** The issue is related to the `putcontig8bitCIELab` function in `tif getimage.c`, which allows remote attackers to cause a denial of service due to an out-of-bounds read. This can be achieved via a packed TIFF image. **Recommendations** For LibTIFF version 4.0.6, consider updating to a newer version that addresses this issue, as the current version allows for a denial of service attack through a packed TIFF image. At the moment, there is no information about a newer version that contains a fix for this vulnerability.