CVE-2023-52355
25.01.2024, 20:15
An out-of-memory flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFRasterScanlineSize64() API. This flaw allows a remote attacker to cause a denial of service via a crafted input with a size smaller than 379 KB.Enginsight
| Vendor | Product | Version |
|---|---|---|
| libtiff | libtiff | 𝑥 < 4.6.0 |
| redhat | enterprise_linux | 8.0 |
| redhat | enterprise_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| gdal |
| ||||||||||||
| neuron |
| ||||||||||||
| qtwebengine-opensource-src |
| ||||||||||||
| texmaker |
| ||||||||||||
| tiff |
|
Common Weakness Enumeration
References