CVE-2004-1308: Buffer Overflow
Published Dec 22, 2004
·Updated
Integer overflow in (1) tifdirread.c and (2) tiffax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a TIFF file containing a TIFFASCII or TIFFUNDEFINED directory entry with a -1 entry count, which leads to a heap-based buffer overflow.
Affected Software
10 affected components
LibTIFF libtiff=3.4
LibTIFF libtiff=3.5.1
LibTIFF libtiff=3.5.2
LibTIFF libtiff=3.5.3
LibTIFF libtiff=3.5.4
LibTIFF libtiff=3.5.5
LibTIFF libtiff=3.5.7
LibTIFF libtiff=3.6.0
LibTIFF libtiff=3.6.1
LibTIFF libtiff=3.7.0
Remediation
Event History
Dec 22, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1308?
CVE-2004-1308 has a critical severity rating due to the potential for arbitrary code execution.
2
How do I fix CVE-2004-1308?
To fix CVE-2004-1308, update libtiff to version 3.6.1 or later.
3
What types of attacks are possible with CVE-2004-1308?
CVE-2004-1308 allows remote attackers to exploit the vulnerability through specially crafted TIFF files.
4
Which versions of libtiff are affected by CVE-2004-1308?
Affected versions include libtiff versions 3.4, 3.5.2 to 3.5.7, and 3.7.0.
5
Is there a workaround for CVE-2004-1308 if updating is not immediately possible?
A temporary workaround for CVE-2004-1308 is to avoid opening untrusted TIFF files.