Back to search
CVE-2009-5022
Published: May 3, 2011
Modified: Aug 7, 2024
PUBLISHED
Description
Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execute arbitrary code via a crafted TIFF file.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20110412 libtiff CVE assignments
mailing-list
x_refsource_MLIST
DSA-2256
vendor-advisory
x_refsource_DEBIAN
libtiff-ojpeg-bo(66774)
vdb-entry
x_refsource_XF
44271
third-party-advisory
x_refsource_SECUNIA
http://bugzilla.maptools.org/show_bug.cgi?id=1999
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=695885
x_refsource_CONFIRM
1025380
vdb-entry
x_refsource_SECTRACK
MDVSA-2011:078
vendor-advisory
x_refsource_MANDRIVA
GLSA-201209-02
vendor-advisory
x_refsource_GENTOO
FEDORA-2011-5304
vendor-advisory
x_refsource_FEDORA
ADV-2011-1014
vdb-entry
x_refsource_VUPEN
http://www.remotesensing.org/libtiff/v3.9.5.html
x_refsource_CONFIRM
ADV-2011-1082
vdb-entry
x_refsource_VUPEN
47338
vdb-entry
x_refsource_BID
USN-1120-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2011:0452
vendor-advisory
x_refsource_REDHAT
50726
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now