Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a negative tile depth in a tiff image, which triggers an improper conversion between signed and unsigned types, leading to a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libtiff 数字错误漏洞
Vulnerability Description
LibTIFF是一个读写TIFF(标签图像文件格式)文件的库。该库包含一些处理TIFF文件的命令行工具。 libTIFF 3.9.4版本及之前版本存在数字错误漏洞,该漏洞源于应用程序对用户提供的数据在复制到大小不足的缓冲区之前未经正确的边界值校验。攻击者利用该漏洞在受影响应用程序环境中执行任意代码,从而导致拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A