CVE-2006-3465: High severity LibTIFF libtiff vulnerability
Published Aug 3, 2006
·Updated
Unspecified vulnerability in the custom tag support for the TIFF library (libtiff) before 3.8.2 allows remote attackers to cause a denial of service (instability or crash) and execute arbitrary code via unknown vectors.
Affected Software
1 affected component
LibTIFF libtiff<=3.8.1
Remediation
Patch Available
Event History
Aug 3, 2006
CVE Published
01:04 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3465?
CVE-2006-3465 has not been assigned a specific CVSS score, but it can lead to denial of service and potential arbitrary code execution.
2
How do I fix CVE-2006-3465?
To fix CVE-2006-3465, upgrade the libtiff library to version 3.8.2 or later.
3
What software is affected by CVE-2006-3465?
CVE-2006-3465 affects versions of the libtiff library prior to 3.8.2.
4
What type of attacks can exploit CVE-2006-3465?
CVE-2006-3465 can be exploited by remote attackers to cause denial of service and potentially execute arbitrary code.
5
Is CVE-2006-3465 still a concern today?
While CVE-2006-3465 is an older vulnerability, systems using vulnerable versions of libtiff may still be at risk if not patched.