CVE-2010-2595Improper Input Validation in Tiff

Severity
4.3MEDIUMNVD
EPSS
1.8%
top 17.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 2
Latest updateMay 17

Description

The TIFFYCbCrtoRGB function in LibTIFF 3.9.0 and 3.9.2, as used in ImageMagick, does not properly handle invalid ReferenceBlackWhite values, which allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image that triggers an array index error, related to "downsampled OJPEG input."

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

NVDlibtiff/libtiff3.9.0, 3.9.2+1
debiandebian/tiff< tiff 3.9.6-1 (bookworm)

🔴Vulnerability Details

2
GHSA
GHSA-wvcx-9365-9p2w: The TIFFYCbCrtoRGB function in LibTIFF 32022-05-17
OSV
CVE-2010-2595: The TIFFYCbCrtoRGB function in LibTIFF 32010-07-02

📋Vendor Advisories

4
Ubuntu
tiff regression2011-03-15
Ubuntu
tiff vulnerabilities2011-03-07
Red Hat
libtiff: Array index error due improper handling of invalid ReferenceBlackWhite values2010-04-16
Debian
CVE-2010-2595: tiff - The TIFFYCbCrtoRGB function in LibTIFF 3.9.0 and 3.9.2, as used in ImageMagick, ...2010

💬Community

1
Bugzilla
CVE-2010-2595 libtiff: Array index error due improper handling of invalid ReferenceBlackWhite values2010-07-02