Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Youngx

#29956of 53,624
8.8Total CVSS
Vulnerabilities · 1
PT-2018-2588
8.8
2018-09-16
Libtiff · Libtiff · CVE-2018-17100
**Name of the Vulnerable Software and Affected Versions** LibTIFF version 4.0.9 **Description** The issue is related to an integer overflow in the `multiply ms` function in `tools/ppm2tiff.c`, which can cause a denial of service or possibly have other unspecified impacts via a crafted image file. This can allow a remote attacker to access confidential information or cause a denial of service. **Recommendations** For LibTIFF version 4.0.9, consider updating to a newer version that addresses the integer overflow issue in the `multiply ms` function. As a temporary workaround, restrict the use of crafted image files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.