PT-2017-2616 · Libtiff+3 · Libtiff+3
Published
2017-05-21
·
Updated
2025-01-08
·
CVE-2017-9117
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LibTIFF versions 4.0.6 through 4.0.7
Description
The issue arises from the program's failure to verify that
biWidth and biHeight in the bitmap-information header of BMP images match the actual input. This leads to a heap-based buffer over-read, as demonstrated in the bmp2tiff component. The vulnerability can be exploited by a remote attacker to read data beyond the boundaries of a buffer allocated in dynamic memory.Recommendations
For LibTIFF version 4.0.6, consider disabling the
bmp2tiff component until a patch is available.
For LibTIFF version 4.0.7, restrict access to the bmp2tiff function to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Out of bounds Read
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Libtiff
Suse
Ubuntu