[3.8] tiff: Multiple vulnerabilities (CVE-2018-12900, CVE-2018-18557, CVE-2018-18661)ID: oval:org.secpod.oval:def:1801262 | Date: (C)2018-12-19 (M)2022-08-08 |
Class: PATCH | Family: unix |
CVE-2018-12900: Heap-based buffer overflow in the cpSeparateBufToContigBuf function resulting in a denial of service¶ Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted TIFF file.
Platform: |
Alpine Linux 3.8 |