Libtiff · Libtiff · CVE-2018-17100
**Name of the Vulnerable Software and Affected Versions**
LibTIFF version 4.0.9
**Description**
The issue is related to an integer overflow in the `multiply ms` function in `tools/ppm2tiff.c`, which can cause a denial of service or possibly have other unspecified impacts via a crafted image file. This can allow a remote attacker to access confidential information or cause a denial of service.
**Recommendations**
For LibTIFF version 4.0.9, consider updating to a newer version that addresses the integer overflow issue in the `multiply ms` function. As a temporary workaround, restrict the use of crafted image files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.