mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-13 14:14:44 +02:00
1.1 KiB
1.1 KiB
CVE-2019-7663
Description
An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted tiff file. This is different from CVE-2018-12900.
POC
Reference
- http://bugzilla.maptools.org/show_bug.cgi?id=2833
- http://bugzilla.maptools.org/show_bug.cgi?id=2833
- https://usn.ubuntu.com/3906-1/
- https://usn.ubuntu.com/3906-1/