First published: Fri May 14 2010(Updated: )
Multiple integer overflows in the Fax3SetupState function in tif_fax3.c in the FAX3 decoder in LibTIFF before 3.9.3, as used in ImageIO in Apple Mac OS X 10.5.8 and Mac OS X 10.6 before 10.6.4, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TIFF file that triggers a heap-based buffer overflow.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/libtiff | <0:3.5.7-34.el3 | 0:3.5.7-34.el3 |
redhat/libtiff | <0:3.6.1-12.el4_8.5 | 0:3.6.1-12.el4_8.5 |
redhat/libtiff | <0:3.8.2-7.el5_5.5 | 0:3.8.2-7.el5_5.5 |
Apple iOS and macOS | =10.5.8 | |
Apple macOS Server | =10.5.8 | |
Apple macOS Server | =10.6.3 | |
Apple iOS and macOS | =10.6.3 | |
Apple macOS Server | =10.6.1 | |
Apple macOS Server | =10.6.2 | |
Apple iOS and macOS | =10.6.1 | |
Apple macOS Server | =10.6.0 | |
Apple iOS and macOS | =10.6.0 | |
Apple iOS and macOS | =10.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-1411 is considered high severity due to the potential for remote code execution and denial of service.
To fix CVE-2010-1411, update libtiff to version 3.9.3 or later.
Mac OS X 10.5.8 and versions prior to 10.6.4 are affected by CVE-2010-1411.
Yes, CVE-2010-1411 can be exploited remotely through specially crafted TIFF files.
CVE-2010-1411 involves multiple integer overflows in the Fax3SetupState function of the FAX3 decoder in LibTIFF.