CVE Database
/

CVE-2016-3945

Back to search

CVE-2016-3945

Published: Sep 21, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

Multiple integer overflows in the (1) cvt_by_strip and (2) cvt_by_tile functions in the tiff2rgba tool in LibTIFF 4.0.6 and earlier, when -b mode is enabled, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted TIFF image, which triggers an out-of-bounds write.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2016:1547
vendor-advisory
x_refsource_REDHAT
GLSA-201701-16
vendor-advisory
x_refsource_GENTOO
openSUSE-SU-2016:2275
vendor-advisory
x_refsource_SUSE
RHSA-2016:1546
vendor-advisory
x_refsource_REDHAT
85960
vdb-entry
x_refsource_BID
DSA-3762
vendor-advisory
x_refsource_DEBIAN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now