Description
Vulnerability in tif_dirread.c for libtiff allows remote attackers to cause a denial of service (application crash) via a TIFF image that causes a divide-by-zero error when the number of row bytes is zero, a different vulnerability than CVE-2005-2452.
CVSS vector
AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9Confidentiality: None
Integrity: None
Affected Packages2 packages
🔴Vulnerability Details
4GHSAGHSA-3qc8-39jf-7268: libtiff up to 3↗2022-05-01 ▶ GHSAGHSA-8mfw-4xw2-v3m5: Vulnerability in tif_dirread↗2022-04-29 ▶ OSVCVE-2005-2452: libtiff up to 3↗2005-08-03 ▶ OSVCVE-2004-0804: Vulnerability in tif_dirread↗2004-11-03 ▶ 📋Vendor Advisories
3DebianCVE-2005-2452: tiff - libtiff up to 3.7.0 allows remote attackers to cause a denial of service (applic...↗2005 ▶ DebianCVE-2004-0804: tiff - Vulnerability in tif_dirread.c for libtiff allows remote attackers to cause a de...↗2004 ▶ 💬Community
3BugzillaCVE-2004-0804 security flaw↗2018-08-16 ▶ BugzillaCAN-2004-0803 multiple issues in libtiff (CAN-2004-0804 CAN-2004-0886)↗2004-10-29 ▶ BugzillaCAN-2004-0803 CAN-2004-0804 CAN-2004-0886 multiple issues in libtiff↗2004-10-29 ▶