CVE-2014-8129
12.03.2018, 02:29
LibTIFF 4.0.3 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a crafted TIFF image, as demonstrated by failure of tif_next.c to verify that the BitsPerSample value is 2, and the t2p_sample_lab_signed_to_unsigned function in tiff2pdf.c.Enginsight
Vendor | Product | Version |
---|---|---|
libtiff | libtiff | 4.0.3 |
debian | debian_linux | 7.0 |
redhat | enterprise_linux_server | 6.0 |
redhat | enterprise_linux_server | 7.0 |
redhat | enterprise_linux_server_aus | 7.2 |
redhat | enterprise_linux_server_aus | 7.3 |
redhat | enterprise_linux_server_aus | 7.4 |
redhat | enterprise_linux_server_eus | 7.2 |
redhat | enterprise_linux_server_eus | 7.3 |
redhat | enterprise_linux_server_eus | 7.4 |
redhat | enterprise_linux_server_tus | 7.2 |
redhat | enterprise_linux_server_tus | 7.3 |
apple | mac_os_x | 10.8.5 |
apple | mac_os_x | 10.9.5 |
apple | mac_os_x | 10.10.0 |
apple | mac_os_x | 10.10.1 |
apple | mac_os_x | 10.10.2 |
apple | mac_os_x | 10.10.3 |
apple | iphone_os | - |
apple | iphone_os | - |
apple | iphone_os | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References