İçeriğe atla
Noroxi

libtiff kayıtları

libtiff üreticisine ait 262 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
1 · %0,4
Pre-auth RCE
37
Düzeltme kaydı olan
%98,9
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

262 kayıt
  • CVE-2006-3459
    46Planlayın

    Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow co

    YüksekCVSS 7,5SilahlaştırılmışEPSS %54

    libtiff · libtiff2 Ağu 2006

  • CVE-2004-1308
    44Planlayın

    Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a

    KritikCVSS 10,0İstismar yokEPSS %15

    libtiff · libtiff10 Oca 2005

  • CVE-2018-12900
    43Planlayın

    Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.

    YüksekCVSS 8,8İstismar yokEPSS %25

    libtiff · libtiff26 Haz 2018

  • CVE-2015-8668
    43Planlayın

    Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attack

    KritikCVSS 9,8İstismar yokEPSS %14

    libtiff · libtiff8 Oca 2016

  • CVE-2004-0929
    42Planlayın

    Heap-based buffer overflow in the OJPEGVSetField function in tif_ojpeg.c for libtiff 3.6.1 and earlier, when compiled with the OJPEG_SUPPORT

    KritikCVSS 10,0İstismar yokEPSS %8

    libtiff · libtiff27 Oca 2005

  • CVE-2016-9535
    40Planlayın

    tif_predict.h and tif_predict.c in libtiff 4.0.6 have assertions that can lead to assertion failures in debug mode, or buffer overflows in r

    KritikCVSS 9,8İstismar yokEPSS %5

    libtiff · libtiff22 Kas 2016

  • CVE-2015-7554
    40Planlayın

    The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or

    KritikCVSS 9,8İstismar yokEPSS %4

    libtiff · libtiff8 Oca 2016

  • CVE-2016-9540
    40Planlayın

    tools/tiffcp.c in libtiff 4.0.6 has an out-of-bounds write on tiled images with odd tile width versus image width.

    KritikCVSS 9,8İstismar yokEPSS %4

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9534
    40Planlayın

    tif_write.c in libtiff 4.0.6 has an issue in the error code path of TIFFFlushData1() that didn't reset the tif_rawcc and tif_rawcp members.

    KritikCVSS 9,8İstismar yokEPSS %4

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9538
    40Planlayın

    tools/tiffcrop.c in libtiff 4.0.6 reads an undefined buffer in readContigStripsIntoBuffer() because of a uint16 integer overflow.

    KritikCVSS 9,8İstismar yokEPSS %3

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9533
    40Planlayın

    tif_pixarlog.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers.

    KritikCVSS 9,8İstismar yokEPSS %3

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9537
    40Planlayın

    tools/tiffcrop.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in buffers.

    KritikCVSS 9,8İstismar yokEPSS %3

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9536
    40Planlayın

    tools/tiff2pdf.c in libtiff 4.0.6 has out-of-bounds write vulnerabilities in heap allocated buffers in t2p_process_jpeg_strip().

    KritikCVSS 9,8İstismar yokEPSS %3

    libtiff · libtiff22 Kas 2016

  • CVE-2016-9539
    40Planlayın

    tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer().

    KritikCVSS 9,8İstismar yokEPSS %3

    libtiff · libtiff22 Kas 2016

  • CVE-2018-18557
    39İzleyin

    LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta,

    YüksekCVSS 8,8Kavram kanıtıEPSS %15

    libtiff · libtiff22 Eki 2018

  • CVE-2017-17095
    38İzleyin

    tools/pal2rgb.c in pal2rgb in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (TIFFSetupStrips heap-based buffer overflow

    YüksekCVSS 8,8Kavram kanıtıEPSS %11

    libtiff · libtiff2 Ara 2017

  • CVE-2009-2347
    38İzleyin

    Multiple integer overflows in inter-color spaces conversion tools in libtiff 3.8 through 3.8.2, 3.9, and 4.0 allow context-dependent attacke

    KritikCVSS 9,3İstismar yokEPSS %4

    libtiff · libtiff14 Tem 2009

  • CVE-2016-6223
    37İzleyin

    The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of serv

    KritikCVSS 9,1İstismar yokEPSS %3

    libtiff · libtiff23 Oca 2017

  • CVE-2016-5314
    36İzleyin

    Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of s

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff11 Mar 2018

  • CVE-2017-5225
    36İzleyin

    LibTIFF version 4.0.7 is vulnerable to a heap buffer overflow in the tools/tiffcp resulting in DoS or code execution via a crafted BitsPerSa

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff12 Oca 2017

  • CVE-2018-17795
    36İzleyin

    The function t2p_write_pdf in tiff2pdf.c in LibTIFF 4.0.9 and earlier allows remote attackers to cause a denial of service (heap-based buffe

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff30 Eyl 2018

  • CVE-2018-15209
    36İzleyin

    ChopUpSingleUncompressedStrip in tif_dirread.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (heap-based buffer over

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff8 Ağu 2018

  • CVE-2017-9935
    36İzleyin

    In LibTIFF 4.0.8, there is a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c.

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff26 Haz 2017

  • CVE-2019-6128
    36İzleyin

    The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff11 Oca 2019

  • CVE-2014-8129
    36İzleyin

    LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a cra

    YüksekCVSS 8,8İstismar yokEPSS %4

    libtiff · libtiff11 Mar 2018