CVE-2023-1560
Summary
| CVE | CVE-2023-1560 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-22 12:15:00 UTC |
| Updated | 2023-11-07 04:04:00 UTC |
| Description | A vulnerability, which was classified as problematic, has been found in TinyTIFF 3.0.0.0. This issue affects some unknown processing of the file tinytiffreader.c of the component File Handler. The manipulation leads to buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-223553 was assigned to this vulnerability. |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Tinytiff Project | Tinytiff | 3.0.0.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| GitHub - 10cksYiqiyinHangzhouTechnology/Security-Issue-Report-of-TinyTIFF | MISC | github.com | |
| Security-Issue-Report-of-TinyTIFF/id8 at main · 10cksYiqiyinHangzhouTechnology/Security-Issue-Report-of-TinyTIFF · GitHub | MISC | github.com | |
| Login required | MISC | vuldb.com | |
| Login required | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.