Description
Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
Published: 2005-05-04
Score: 7.5 High
EPSS: 5.1% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2004-1304 Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.
History

No history.

Subscriptions

Apple Mac Os X Mac Os X Server
Avaya Call Management System Server Cvlan Integrated Management Interactive Response Intuity Audix Lx Mn100 Modular Messaging Message Storage Server
Conectiva Linux
F5 Icontrol Service Manager
Gentoo Linux
Libtiff Libtiff
Mandrakesoft Mandrake Linux Mandrake Linux Corporate Server
Redhat Enterprise Linux
Sco Unixware
Sgi Propack
Sun Solaris Sunos
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-08T00:46:12.284Z

Reserved: 2004-12-21T00:00:00.000Z

Link: CVE-2004-1307

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2004-12-21T05:00:00.000

Modified: 2026-04-16T00:27:16.627

Link: CVE-2004-1307

cve-icon Redhat

Severity : Moderate

Publid Date: 2004-12-21T00:00:00Z

Links: CVE-2004-1307 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses