CVE Database
/

CVE-2016-9535

Back to search

CVE-2016-9535

Published: Nov 22, 2016

Modified: May 29, 2026

PUBLISHED

Description

tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in release mode, when dealing with unusual tile size like YCbCr with subsampling. Reported as MSVR 35105, aka "Predictor heap-buffer-overflow."

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-3844
vendor-advisory
x_refsource_DEBIAN
RHSA-2017:0225
vendor-advisory
x_refsource_REDHAT
94744
vdb-entry
x_refsource_BID
94484
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now