First published: Tue Dec 21 2004(Updated: )
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avaya Interactive Response | =1.2.1 | |
Libtiff Libtiff | =3.6.1 | |
Conectiva Linux | =9.0 | |
SGI ProPack | =3.0 | |
Avaya Call Management System Server | =8.0 | |
F5 Icontrol Service Manager | =1.3.5 | |
Avaya Integrated Management | ||
Avaya Interactive Response | =1.3 | |
Avaya Call Management System Server | =13.0 | |
Libtiff Libtiff | =3.4 | |
F5 Icontrol Service Manager | =1.3.4 | |
Libtiff Libtiff | =3.5.7 | |
Libtiff Libtiff | =3.7.0 | |
Avaya Intuity Audix Lx | ||
Libtiff Libtiff | =3.6.0 | |
Libtiff Libtiff | =3.5.3 | |
Libtiff Libtiff | =3.5.4 | |
Libtiff Libtiff | =3.5.2 | |
Avaya Call Management System Server | =9.0 | |
Avaya Cvlan | ||
Avaya Interactive Response | ||
Libtiff Libtiff | =3.5.5 | |
Conectiva Linux | =10.0 | |
Libtiff Libtiff | =3.5.1 | |
Avaya Call Management System Server | =11.0 | |
F5 Icontrol Service Manager | =1.3.6 | |
F5 Icontrol Service Manager | =1.3 | |
Avaya Call Management System Server | =12.0 | |
Apple Mac OS X Server | =10.3.2 | |
SCO UnixWare | =7.1.4 | |
Apple Mac OS X Server | =10.3.7 | |
Apple Mac OS X Server | =10.3.5 | |
Apple Mac OS X | =10.3.1 | |
Apple Mac OS X | =10.3.5 | |
Apple Mac OS X Server | =10.3.3 | |
Avaya Modular Messaging Message Storage Server | =2.0 | |
Mandrakesoft Mandrake Linux | =10.1 | |
Sun SunOS | =5.7 | |
Sun SunOS | =5.8 | |
Apple Mac OS X Server | =10.3.4 | |
Avaya Mn100 | ||
Sun Solaris | =9.0 | |
Apple Mac OS X | =10.3.2 | |
Sun Solaris | =10.0 | |
Apple Mac OS X | =10.3.7 | |
Mandrakesoft Mandrake Linux Corporate Server | =3.0 | |
Sun Solaris | =7.0 | |
Mandrakesoft Mandrake Linux Corporate Server | =3.0 | |
Apple Mac OS X | =10.3.6 | |
Apple Mac OS X Server | =10.3 | |
Apple Mac OS X Server | =10.3.8 | |
Apple Mac OS X Server | =10.3.9 | |
Sun Solaris | =9.0 | |
Apple Mac OS X | =10.3.8 | |
Apple Mac OS X Server | =10.3.1 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Apple Mac OS X | =10.3.9 | |
Apple Mac OS X | =10.3.4 | |
Apple Mac OS X | =10.3.3 | |
Avaya Modular Messaging Message Storage Server | =1.1 | |
Sun Solaris | =9.0-x86_update_2 | |
Gentoo Linux | ||
Sun Solaris | =8.0 | |
Apple Mac OS X | =10.3 | |
Apple Mac OS X Server | =10.3.6 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Mandrakesoft Mandrake Linux | =10.1 | |
Sun Solaris | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.