CVE-2023-38288: Ibm cognos analytics vulnerability
REJECT Not a Security Issue.
Other sources
LibTIFF is vulnerable to a denial of service, caused by a memory corruption (overflow) in tiffcp. By persuading a victim to open a a specially crafted content, a remote attacker could exploit this vulnerability to cause a denial of service condition.
— IBM
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2023-38288?
Not a Security Issue.
Which software versions are affected by CVE-2023-38288?
tiff 4.0.3-7ubuntu0.11+, 4.0.6-1ubuntu0.8+, 4.0.9-5ubuntu0.10+, 4.1.0+, 4.3.0-6ubuntu0.5, 4.5.0-5ubuntu1.1, 4.5.1+, 4.1.0+git191117-2~deb10u8, 4.5.1+git230720-1
How do I fix CVE-2023-38288?
Update tiff to version 4.0.3-7ubuntu0.11+ or higher.
Where can I find more information about CVE-2023-38288?
You can find more information about CVE-2023-38288 at the following references: [Launchpad](https://launchpad.net/bugs/cve/CVE-2023-38288), [Debian Security Tracker](https://security-tracker.debian.org/tracker/CVE-2023-38288), [CVE Details](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-38288).