Back to search
CVE-2009-2285
Published: Jul 1, 2009
Modified: Aug 7, 2024
PUBLISHED
Description
Buffer underflow in the LZWDecodeCompat function in libtiff 3.8.2 allows context-dependent attackers to cause a denial of service (crash) via a crafted TIFF image, a different vulnerability than CVE-2008-2327.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
APPLE-SA-2010-03-11-1
vendor-advisory
x_refsource_APPLE
FEDORA-2009-7358
vendor-advisory
x_refsource_FEDORA
35866
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-7717
vendor-advisory
x_refsource_FEDORA
ADV-2009-1637
vdb-entry
x_refsource_VUPEN
[oss-security] 20090623 Re: libtiff buffer underflow in LZWDecodeCompat
mailing-list
x_refsource_MLIST
http://bugzilla.maptools.org/show_bug.cgi?id=2065
x_refsource_CONFIRM
oval:org.mitre.oval:def:7049
vdb-entry
signature
x_refsource_OVAL
39135
third-party-advisory
x_refsource_SECUNIA
http://support.apple.com/kb/HT4004
x_refsource_CONFIRM
APPLE-SA-2010-01-19-1
vendor-advisory
x_refsource_APPLE
USN-797-1
vendor-advisory
x_refsource_UBUNTU
oval:org.mitre.oval:def:10145
vdb-entry
signature
x_refsource_OVAL
http://support.apple.com/kb/HT4105
x_refsource_CONFIRM
35716
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-7763
vendor-advisory
x_refsource_FEDORA
[oss-security] 20090621 libtiff buffer underflow in LZWDecodeCompat
mailing-list
x_refsource_MLIST
35912
third-party-advisory
x_refsource_SECUNIA
http://support.apple.com/kb/HT4070
x_refsource_CONFIRM
APPLE-SA-2010-02-02-1
vendor-advisory
x_refsource_APPLE
35883
third-party-advisory
x_refsource_SECUNIA
ADV-2009-2727
vdb-entry
x_refsource_VUPEN
35695
third-party-advisory
x_refsource_SECUNIA
http://www.lan.st/showthread.php?t=1856&page=3
x_refsource_MISC
36194
third-party-advisory
x_refsource_SECUNIA
36831
third-party-advisory
x_refsource_SECUNIA
GLSA-200908-03
vendor-advisory
x_refsource_GENTOO
ADV-2009-3184
vdb-entry
x_refsource_VUPEN
http://support.apple.com/kb/HT4013
x_refsource_CONFIRM
FEDORA-2009-7335
vendor-advisory
x_refsource_FEDORA
APPLE-SA-2010-03-30-2
vendor-advisory
x_refsource_APPLE
267808
vendor-advisory
x_refsource_SUNALERT
RHSA-2009:1159
vendor-advisory
x_refsource_REDHAT
38241
third-party-advisory
x_refsource_SECUNIA
https://bugs.launchpad.net/ubuntu/+source/tiff/+bug/380149
x_refsource_CONFIRM
APPLE-SA-2009-11-09-1
vendor-advisory
x_refsource_APPLE
FEDORA-2009-7417
vendor-advisory
x_refsource_FEDORA
DSA-1835
vendor-advisory
x_refsource_DEBIAN
[oss-security] 20090629 CVE Request -- libtiff [was: Re: libtiff buffer underflow in LZWDecodeCompat]
mailing-list
x_refsource_MLIST
ADV-2010-0173
vdb-entry
x_refsource_VUPEN
http://support.apple.com/kb/HT3937
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now