Oval Definition:oval:org.mitre.oval:tst:31219
Comment:libtiff is earlier than 0:3.5.7-22.el3
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14341
State:oval:org.mitre.oval:ste:9591
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9392
V
Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a TIFF file containing a TIFF_ASCII or TIFF_UNDEFINED directory entry with a -1 entry count, which leads to a heap-based buffer overflow.
2013-04-29
oval:org.mitre.oval:def:9743
V
Integer overflow in the tiffdump utility for libtiff 3.7.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted TIFF file.
2013-04-29
BACK