libtiff records
262 published records for vendor libtiff.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 1 · 0.4%
- Pre-auth RCE
- 37
- With a fix record
- 98.9%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer57
- CWE-125 Out-of-bounds Read39
- CWE-787 Out-of-bounds Write37
- CWE-20 Improper Input Validation18
- CWE-476 NULL Pointer Dereference15
- CWE-369 Divide By Zero13
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
262 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
46Plan | CVE-2006-3459Weaponized | Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow colibtiff · libtiff · CWE-119 | High7.5 | — | 53.7% | Aug 2, 2006 |
44Plan | CVE-2004-1308No exploit | Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via alibtiff · libtiff | Critical10.0 | — | 15.0% | Jan 10, 2005 |
43Plan | CVE-2018-12900No exploit | Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.libtiff · libtiff · CWE-787 | High8.8 | — | 25.2% | Jun 26, 2018 |
43Plan | CVE-2015-8668No exploit | Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attacklibtiff · libtiff · CWE-787 | Critical9.8 | — | 13.7% | Jan 8, 2016 |
42Plan | CVE-2004-0929No exploit | Heap-based buffer overflow in the OJPEGVSetField function in tif_ojpeg.c for libtiff 3.6.1 and earlier, when compiled with the OJPEG_SUPPORTlibtiff · libtiff | Critical10.0 | — | 8.2% | Jan 27, 2005 |
40Plan | CVE-2016-9535No exploit | tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in rlibtiff · libtiff · CWE-119 | Critical9.8 | — | 4.8% | Nov 22, 2016 |
40Plan | CVE-2015-7554No exploit | The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or libtiff · libtiff · CWE-254 | Critical9.8 | — | 4.2% | Jan 8, 2016 |
40Plan | CVE-2016-9540No exploit | tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width.libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.6% | Nov 22, 2016 |
40Plan | CVE-2016-9534No exploit | tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members.libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.6% | Nov 22, 2016 |
40Plan | CVE-2016-9538No exploit | tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow.libtiff · libtiff · CWE-190 | Critical9.8 | — | 3.4% | Nov 22, 2016 |
40Plan | CVE-2016-9533No exploit | tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers.libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.2% | Nov 22, 2016 |
40Plan | CVE-2016-9537No exploit | tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers.libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.1% | Nov 22, 2016 |
40Plan | CVE-2016-9536No exploit | tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip().libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.1% | Nov 22, 2016 |
40Plan | CVE-2016-9539No exploit | tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer().libtiff · libtiff · CWE-119 | Critical9.8 | — | 3.0% | Nov 22, 2016 |
39Monitor | CVE-2018-18557Proof of concept | LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, libtiff · libtiff · CWE-787 | High8.8 | — | 15.0% | Oct 22, 2018 |
38Monitor | CVE-2017-17095Proof of concept | tools/pal2rgb.c in pal2rgb in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (TIFFSetupStrips heap-based buffer overflowlibtiff · libtiff · CWE-119 | High8.8 | — | 10.6% | Dec 2, 2017 |
38Monitor | CVE-2009-2347No exploit | Multiple integer overflows in inter-color spaces conversion tools in libtiff 3.8 through 3.8.2, 3.9, and 4.0 allow context-dependent attackelibtiff · libtiff · CWE-189 | Critical9.3 | — | 4.2% | Jul 14, 2009 |
37Monitor | CVE-2016-6223No exploit | The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of servlibtiff · libtiff · CWE-189 | Critical9.1 | — | 3.3% | Jan 23, 2017 |
36Monitor | CVE-2016-5314No exploit | Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of slibtiff · libtiff · CWE-787 | High8.8 | — | 4.4% | Mar 11, 2018 |
36Monitor | CVE-2017-5225No exploit | LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSalibtiff · libtiff · CWE-119 | High8.8 | — | 4.4% | Jan 12, 2017 |
36Monitor | CVE-2018-17795No exploit | The function t2p_write_pdf in tiff2pdf.c in LibTIFF 4.0.9 and earlier allows remote attackers to cause a denial of service (heap-based buffelibtiff · libtiff · CWE-787 | High8.8 | — | 4.1% | Sep 30, 2018 |
36Monitor | CVE-2018-15209No exploit | ChopUpSingleUncompressedStrip in tif_dirread.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (heap-based buffer overlibtiff · libtiff · CWE-787 | High8.8 | — | 4.0% | Aug 8, 2018 |
36Monitor | CVE-2017-9935No exploit | In LibTIFF 4.0.8, there is a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c.libtiff · libtiff · CWE-125 | High8.8 | — | 3.9% | Jun 26, 2017 |
36Monitor | CVE-2019-6128No exploit | The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.libtiff · libtiff · CWE-401 | High8.8 | — | 3.9% | Jan 11, 2019 |
36Monitor | CVE-2014-8129No exploit | LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a cralibtiff · libtiff · CWE-787 | High8.8 | — | 3.7% | Mar 11, 2018 |
- CVE-2006-345946Plan
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow co
HighCVSS 7.5WeaponizedEPSS 54%libtiff · libtiffAug 2, 2006
- CVE-2004-130844Plan
Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a
CriticalCVSS 10.0No exploitEPSS 15%libtiff · libtiffJan 10, 2005
- CVE-2018-1290043Plan
Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.
HighCVSS 8.8No exploitEPSS 25%libtiff · libtiffJun 26, 2018
- CVE-2015-866843Plan
Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attack
CriticalCVSS 9.8No exploitEPSS 14%libtiff · libtiffJan 8, 2016
- CVE-2004-092942Plan
Heap-based buffer overflow in the OJPEGVSetField function in tif_ojpeg.c for libtiff 3.6.1 and earlier, when compiled with the OJPEG_SUPPORT
CriticalCVSS 10.0No exploitEPSS 8%libtiff · libtiffJan 27, 2005
- CVE-2016-953540Plan
tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in r
CriticalCVSS 9.8No exploitEPSS 5%libtiff · libtiffNov 22, 2016
- CVE-2015-755440Plan
The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or
CriticalCVSS 9.8No exploitEPSS 4%libtiff · libtiffJan 8, 2016
- CVE-2016-954040Plan
tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width.
CriticalCVSS 9.8No exploitEPSS 4%libtiff · libtiffNov 22, 2016
- CVE-2016-953440Plan
tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members.
CriticalCVSS 9.8No exploitEPSS 4%libtiff · libtiffNov 22, 2016
- CVE-2016-953840Plan
tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow.
CriticalCVSS 9.8No exploitEPSS 3%libtiff · libtiffNov 22, 2016
- CVE-2016-953340Plan
tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers.
CriticalCVSS 9.8No exploitEPSS 3%libtiff · libtiffNov 22, 2016
- CVE-2016-953740Plan
tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers.
CriticalCVSS 9.8No exploitEPSS 3%libtiff · libtiffNov 22, 2016
- CVE-2016-953640Plan
tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip().
CriticalCVSS 9.8No exploitEPSS 3%libtiff · libtiffNov 22, 2016
- CVE-2016-953940Plan
tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer().
CriticalCVSS 9.8No exploitEPSS 3%libtiff · libtiffNov 22, 2016
- CVE-2018-1855739Monitor
LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta,
HighCVSS 8.8Proof of conceptEPSS 15%libtiff · libtiffOct 22, 2018
- CVE-2017-1709538Monitor
tools/pal2rgb.c in pal2rgb in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (TIFFSetupStrips heap-based buffer overflow
HighCVSS 8.8Proof of conceptEPSS 11%libtiff · libtiffDec 2, 2017
- CVE-2009-234738Monitor
Multiple integer overflows in inter-color spaces conversion tools in libtiff 3.8 through 3.8.2, 3.9, and 4.0 allow context-dependent attacke
CriticalCVSS 9.3No exploitEPSS 4%libtiff · libtiffJul 14, 2009
- CVE-2016-622337Monitor
The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of serv
CriticalCVSS 9.1No exploitEPSS 3%libtiff · libtiffJan 23, 2017
- CVE-2016-531436Monitor
Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of s
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffMar 11, 2018
- CVE-2017-522536Monitor
LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSa
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffJan 12, 2017
- CVE-2018-1779536Monitor
The function t2p_write_pdf in tiff2pdf.c in LibTIFF 4.0.9 and earlier allows remote attackers to cause a denial of service (heap-based buffe
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffSep 30, 2018
- CVE-2018-1520936Monitor
ChopUpSingleUncompressedStrip in tif_dirread.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (heap-based buffer over
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffAug 8, 2018
- CVE-2017-993536Monitor
In LibTIFF 4.0.8, there is a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c.
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffJun 26, 2017
- CVE-2019-612836Monitor
The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffJan 11, 2019
- CVE-2014-812936Monitor
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a cra
HighCVSS 8.8No exploitEPSS 4%libtiff · libtiffMar 11, 2018