CVE-2012-5581
Publication date 28 November 2012
Last updated 24 July 2024
Ubuntu priority
Stack-based buffer overflow in tif_dir.c in LibTIFF before 4.0.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DOTRANGE tag in a TIFF image.
Status
Package | Ubuntu Release | Status |
---|---|---|
tiff | 14.04 LTS trusty |
Not affected
|
tiff3 | 14.04 LTS trusty | Not in release |
Patch details
Package | Patch details |
---|---|
tiff |
References
Related Ubuntu Security Notices (USN)
- USN-1655-1
- LibTIFF vulnerability
- 5 December 2012