CVE Database
/

CVE-2016-3620

Back to search

CVE-2016-3620

Published: Oct 3, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

The ZIPEncode function in tif_zip.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c zip" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.

VendorProductVersions

n/a

n/a

affected
n/a

References

1035508
vdb-entry
x_refsource_SECTRACK
GLSA-201701-16
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now