The TIFFReadRawStrip1 and TIFFReadRawTile1 functions in tif_read.c in libtiff before 4.0.7 allows remote attackers to cause a denial of service (crash) or possibly obtain sensitive information via a negative index in a file-content buffer.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:HLibtiff
APPLibtiff≤ 4.0.6
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoS
CWE
References
Related vulnerabilities
CVE-2016-9536CRITICAL9.8PL ✓same product
Podatność heap buffer overflow w libtiff 4.0.6 (tiff2pdf)
CVE-2016-9534CRITICAL9.8PL ✓same product
libtiff: heap-buffer-overflow w TIFFFlushData1 — błąd ścieżki błędu
CVE-2016-9533CRITICAL9.8PL ✓same product
LibTIFF: zapis poza buforem sterty w tif_pixarlog.c (PixarLog)
CVE-2016-9535CRITICAL9.8PL ✓same product
Buffer overflow w libtiff 4.0.6 — błąd w obsłudze predyktora kafelków YCbCr
CVE-2016-9537CRITICAL9.8PL ✓same product
Out-of-bounds write w libtiff 4.0.6 — narzędzie tiffcrop