PT-2024-5544 · Libtiff+1 · Libtiff+1

Published

2024-07-15

·

Updated

2024-09-04

·

CVE-2024-6716

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions LibTIFF (affected versions not specified)
Description The issue is related to the TIFFReadEncodedStrip function in the LibTIFF library, which is associated with an uncontrolled resource consumption. This can be exploited by a remote attacker to cause a denial of service, resulting in memory starvation for the system using LibTIFF.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

BDU:2024-06210
CVE-2024-6716

Affected Products

Libtiff
Red Os