Libtiff: segment fault in libtiff in tiffreadrgbatileext() leading to denial of service
A segment fault (SEGV) flaw was found in libtiff that could be triggered by passing a crafted tiff file to the TIFFReadRGBATileExt() API. This flaw allows a remote attacker to cause a heap-buffer overflow, leading to a denial of service.
Affected products
- <4.6.0
- *
- *
- *
- *
- *
Package maintainers
-
@l0b0 Victor Engmark <victor@engmark.name>
-
@imincik Ivan Mincik <ivan.mincik@gmail.com>
-
@sikmir Nikolay Korotkiy <sikmir@disroot.org>
-
@nialov Nikolas Ovaskainen <nikolasovaskainen@gmail.com>
-
@willcohen Will Cohen
-
@autra Augustin Trancart <augustin.trancart@gmail.com>
-
@nh2 Niklas Hambüchen <mail@nh2.me>