CVE-2016-9539: Buffer Overflow
Published Nov 22, 2016
·Updated
tools/tiffcrop.c in libtiff 4.0.6 has an out-of-bounds read in readContigTilesIntoBuffer(). Reported as MSVR 35092.
Affected Software
1 affected component
LibTIFF libtiff=4.0.6
Remediation
Event History
Nov 22, 2016
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-9539?
CVE-2016-9539 has been assessed as a significant vulnerability due to the potential for out-of-bounds read, which could lead to information leakage or application crashes.
2
How do I fix CVE-2016-9539?
To address CVE-2016-9539, upgrade libtiff to version 4.0.7 or later, which contains the necessary patches.
3
What software is affected by CVE-2016-9539?
CVE-2016-9539 specifically affects libtiff version 4.0.6.
4
What kind of vulnerability is CVE-2016-9539?
CVE-2016-9539 is categorized as an out-of-bounds read vulnerability.
5
When was CVE-2016-9539 reported?
CVE-2016-9539 was reported in the context of libtiff 4.0.6, indicating a vulnerability present in that specific version.