CVE-2018-12900: Buffer Overflow
Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0beta7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4.0.8 and 4.0.9 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via a crafted TIFF file.
Other sources
Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via a crafted TIFF file.
Upstream issue:
http://bugzilla.maptools.org/showbug.cgi?id=2798
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/tiffto a version that resolves this vulnerability.Fixed in 4.0.8-2+deb9u5Fixed in 4.0.10-4 - Upgrade
Upgrade
debian/tiffto a version that resolves this vulnerability.Fixed in 4.2.0-1+deb11u5Fixed in 4.2.0-1+deb11u8Fixed in 4.5.0-6+deb12u4Fixed in 4.7.0-3+deb13u2Fixed in 4.7.0-3+deb13u3Fixed in 4.7.2-1
Event History
Frequently Asked Questions
What is the severity of CVE-2018-12900?
CVE-2018-12900 has a critical severity due to its potential for remote exploitation and denial of service.
How do I fix CVE-2018-12900?
To fix CVE-2018-12900, upgrade to a patched version of LibTIFF, specifically version 4.0.10 or later.
Which versions of LibTIFF are affected by CVE-2018-12900?
CVE-2018-12900 affects LibTIFF versions from 3.9.3 to 4.0.9.
Is CVE-2018-12900 exploitable remotely?
Yes, CVE-2018-12900 can be exploited remotely, leading to potential denial of service.
What are the potential impacts of CVE-2018-12900?
The potential impacts of CVE-2018-12900 include crashes, denial of service, and possible unauthorized code execution.