First published: Mon Oct 03 2016(Updated: )
ImageIO. An out-of-bound read existed in LibTIFF versions before 4.0.7. This was addressed by updating LibTIFF in ImageIO to version 4.0.7.
Credit: CVE-2016-3619 cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
libtiff | =4.0.6 | |
Apple iOS, iPadOS, and watchOS | <10.3 | 10.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2016-3619 is considered a medium severity vulnerability due to its potential for causing information disclosure.
To fix CVE-2016-3619, users should update LibTIFF to version 4.0.7 or later.
CVE-2016-3619 affects LibTIFF versions 4.0.6 and earlier, and Apple iOS versions prior to 10.3.
CVE-2016-3619 can lead to out-of-bounds read vulnerabilities which may allow remote attackers to access sensitive information.
Apple is the vendor that addressed CVE-2016-3619 by updating the LibTIFF version used in iOS.