CVE-2023-0795: Medium severity ibm cognos analytics vulnerability
A flaw was found in tiffcrop, a program distributed by the libtiff package. A specially crafted tiff file can lead to an out-of-bounds read in the extractContigSamplesShifted16bits function in tools/tiffcrop.c, resulting in a Denial of Service and limited information disclosure.
Other sources
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3488, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
LibTIFF is vulnerable to a denial of service, caused by a segmentation fault when processing TIFF files in extractContigSamplesShifted8bits in tools/tiffcrop.c. By persuading a victim to open a specially-crafted TIFF file, a remote attacker could overflow a buffer and cause a denial of service.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-0795?
CVE-2023-0795 is a vulnerability in LibTIFF 4.4.0 that allows attackers to cause a denial-of-service via a crafted tiff file.
How does CVE-2023-0795 affect LibTIFF?
CVE-2023-0795 affects LibTIFF 4.4.0, specifically the tiffcrop tool in tools/tiffcrop.c:3488.
How can an attacker exploit CVE-2023-0795?
An attacker can exploit CVE-2023-0795 by using a crafted tiff file to trigger an out-of-bounds read in the tiffcrop tool.
How can I fix CVE-2023-0795 in LibTIFF?
If you compile libtiff from sources, the fix for CVE-2023-0795 is available with commit afaabc3e.
Where can I find more information about CVE-2023-0795?
You can find more information about CVE-2023-0795 at the following references: [link1](https://security-tracker.debian.org/tracker/CVE-2023-0795) [link2](https://security-tracker.debian.org/tracker/CVE-2023-0796) [link3](https://security-tracker.debian.org/tracker/CVE-2023-0797)