PT-2017-2616 · Libtiff+3 · Libtiff+3

Published

2017-05-21

·

Updated

2025-01-08

·

CVE-2017-9117

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions LibTIFF versions 4.0.6 through 4.0.7
Description The issue arises from the program's failure to verify that biWidth and biHeight in the bitmap-information header of BMP images match the actual input. This leads to a heap-based buffer over-read, as demonstrated in the bmp2tiff component. The vulnerability can be exploited by a remote attacker to read data beyond the boundaries of a buffer allocated in dynamic memory.
Recommendations For LibTIFF version 4.0.6, consider disabling the bmp2tiff component until a patch is available. For LibTIFF version 4.0.7, restrict access to the bmp2tiff function to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2017-01835
CVE-2017-9117
ECHO-EBD8-F169-4A50
SUSE-SU-2018:3879-1
USN-3606-1

Affected Products

Debian
Libtiff
Suse
Ubuntu