There is a heap based buffer overflow in tools/tiff2pdf.c of LibTIFF 4.0.8 via a PlanarConfig=Contig image, which causes a more than one hundred bytes out-of-bounds write (related to the ZIPDecode function in tif_zip.c). A crafted input may lead to a remote denial of service attack or an arbitrary code execution attack.
CVSS Details
- CVSS 3.0 Base Score: 8.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade tiffUpgrade tiff3 | Jan 30, 2018 | Jul 17, 2017 |
| Huawei Euleros 2_0_sp2 | — | Upgrade libtiffUpgrade libtiff-devel | Feb 22, 2021 | Jul 17, 2017 |
| Huawei Euleros 2_0_sp3 | — | Upgrade libtiffUpgrade libtiff-devel | Jan 20, 2021 | Jul 17, 2017 |
| Huawei Euleros 2_0_sp5 | — | Upgrade libtiffUpgrade libtiff-devel | Feb 3, 2021 | Jul 17, 2017 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 14, 2017 |
| Suse | — | Upgrade libtiff3-x86Upgrade libtiff3Upgrade tiffUpgrade libtiff-develUpgrade libtiff-devel-32bitUpgrade libtiff3-32bit | May 10, 2018 | Jul 17, 2017 |
| Ubuntu | — | Upgrade libtiff-toolsUpgrade libtiff5 | Apr 25, 2018 | Jul 17, 2017 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Jul 16, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub