REDHAT-BUG-2302996: Null Pointer Dereference
A null pointer dereference issue was found in Libtiff's tifdirinfo.c file. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or just injecting faults, which would cause segmentation fault. This may cause an application crash, eventually leading to a denial of service.
References: https://gitlab.com/libtiff/libtiff/-/mergerequests/559 https://gitlab.com/libtiff/libtiff/-/issues/624
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2302996?
The severity of REDHAT-BUG-2302996 is considered high due to the potential for causing segmentation faults.
How do I fix REDHAT-BUG-2302996?
To fix REDHAT-BUG-2302996, update to the latest version of Libtiff that includes the patch for this issue.
What causes the issue reported in REDHAT-BUG-2302996?
The issue in REDHAT-BUG-2302996 is caused by a null pointer dereference in the tif_dirinfo.c file of Libtiff.
Which software is affected by REDHAT-BUG-2302996?
REDHAT-BUG-2302996 affects the Libtiff library widely used for handling TIFF image files.
What are the potential impacts of REDHAT-BUG-2302996?
The potential impacts of REDHAT-BUG-2302996 include application crashes and the possibility of memory allocation failures.