[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.5] tiff: uncontrolled resource consumption in TIFFSetDirectory function in tif_dir.c (CVE-2018-5784)

ID: oval:org.secpod.oval:def:1800957Date: (C)2018-04-04   (M)2022-08-25
Class: PATCHFamily: unix




In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.

Platform:
Alpine Linux 3.5
Product:
tiff
Reference:
8709
CVE-2018-5784
CVE    1
CVE-2018-5784
CPE    2
cpe:/o:alpinelinux:alpine_linux:3.5
cpe:/a:libtiff:tiff

© SecPod Technologies