CVE Database
/

CVE-2015-8870

Back to search

CVE-2015-8870

Published: Dec 6, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

Integer overflow in tools/bmp2tiff.c in LibTIFF before 4.0.4 allows remote attackers to cause a denial of service (heap-based buffer over-read), or possibly obtain sensitive information from process memory, via crafted width and length values in RLE4 or RLE8 data in a BMP file.

VendorProductVersions

n/a

n/a

affected
n/a

References

94717
vdb-entry
x_refsource_BID
RHSA-2017:0225
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now