Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LibTIFF Heap Corruption整数溢出漏洞
Vulnerability Description
libtiff 3.6.1版本中tif_dirread.c的TIFFFetchStripThing函数存在整数溢出漏洞。远程攻击者借助一个带有STRIPOFFSETS标志和大量strips的TIFF文件执行任意代码,引发分配零字节缓冲区,并导致基于堆的缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A