CVE-2014-9330
Publication date 20 January 2015
Last updated 24 July 2024
Ubuntu priority
Integer overflow in tif_packbits.c in bmp2tif in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) via crafted BMP image, related to dimensions, which triggers an out-of-bounds read.
Status
Package | Ubuntu Release | Status |
---|---|---|
tiff | ||
14.04 LTS trusty |
Fixed 4.0.3-7ubuntu0.2
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2553-1
- LibTIFF vulnerabilities
- 31 March 2015