First published: Sun Apr 09 2017(Updated: )
Last updated 24 July 2024
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TIFF | =4.0.7 | |
debian/tiff | 4.2.0-1+deb11u5 4.2.0-1+deb11u6 4.5.0-6+deb12u2 4.5.0-6+deb12u1 4.7.0-3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7597 has a medium severity level as it can lead to application crashes and potential denial of service.
To fix CVE-2017-7597, update to versions 4.2.0-1+deb11u5, 4.2.0-1+deb11u6, 4.5.0-6+deb12u2, 4.5.0-6+deb12u1, or 4.5.1+git230720-5 of the tiff package.
CVE-2017-7597 is caused by an undefined behavior issue related to floating point representation in the tif_dirread.c file.
The potential impacts of CVE-2017-7597 include denial of service resulting from application crashes and other unspecified effects.
CVE-2017-7597 affects LibTIFF version 4.0.7 specifically.