An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted tiff file. This is different from CVE-2018-12900.
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Arch Linux | arch-linux-upgrade-latest | Jul 11, 2025 | Feb 9, 2019 | |
| Debian | debian-upgrade-tiff | Feb 20, 2019 | Feb 9, 2019 | |
| Gentoo Linux | gentoo-linux-upgrade-media-libs-tiff | Mar 16, 2020 | Feb 9, 2019 | |
| Huawei Euleros 2_0_sp2 | huawei-euleros-2_0_sp2-upgrade-libtiffhuawei-euleros-2_0_sp2-upgrade-libtiff-devel | Dec 4, 2019 | Feb 9, 2019 | |
| Huawei Euleros 2_0_sp3 | huawei-euleros-2_0_sp3-upgrade-libtiffhuawei-euleros-2_0_sp3-upgrade-libtiff-devel | Dec 18, 2019 | Feb 9, 2019 | |
| Huawei Euleros 2_0_sp5 | huawei-euleros-2_0_sp5-upgrade-libtiffhuawei-euleros-2_0_sp5-upgrade-libtiff-devel | May 1, 2019 | Feb 9, 2019 | |
| Oracle Solaris | oracle-solaris-11-4-upgrade-image-library-libtiff-4-0-10-11-4-14-0-1-1-0 | Oct 16, 2019 | Feb 9, 2019 | |
| Suse | — | suse-upgrade-libtiff-develsuse-upgrade-libtiff-devel-32bitsuse-upgrade-libtiff5suse-upgrade-libtiff5-32bitsuse-upgrade-tiff | Apr 6, 2019 | Feb 9, 2019 |
| Ubuntu | ubuntu-upgrade-libtiff-toolsubuntu-upgrade-libtiff4ubuntu-upgrade-libtiff5 | Apr 1, 2019 | Feb 9, 2019 | |
| Vmware Photon_os | vmware-photon_os_update_tdnf | Jan 20, 2025 | Feb 9, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub