REDHAT-BUG-2383598: Use After Free
A vulnerability was found in LibTIFF up to 4.7.0. It has been declared as critical. This vulnerability affects the function gethistogram of the file tools/tiffmedian.c. The manipulation leads to use after free. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The patch is identified as fe10872e53efba9cc36c66ac4ab3b41a839d5172. It is recommended to apply a patch to fix this issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2383598?
The severity of REDHAT-BUG-2383598 has been declared as critical.
How does the vulnerability REDHAT-BUG-2383598 affect LibTIFF?
REDHAT-BUG-2383598 affects the get_histogram function in LibTIFF, leading to a use after free condition.
What versions of LibTIFF are vulnerable according to REDHAT-BUG-2383598?
Versions of LibTIFF up to and including 4.7.0 are vulnerable according to REDHAT-BUG-2383598.
What type of attack does REDHAT-BUG-2383598 facilitate?
The exploit for REDHAT-BUG-2383598 requires local access for exploitation.
What is the potential impact of exploiting REDHAT-BUG-2383598?
Exploiting REDHAT-BUG-2383598 could lead to the execution of arbitrary code due to the use after free vulnerability.