LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
BID:18172
Info
LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
| Bugtraq ID: | 18172 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2006-0405 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 23 2006 12:00AM |
| Updated: | May 31 2006 05:37PM |
| Credit: | Herve Drolon is credited with the discovery of this vulnerability. |
| Vulnerable: |
LibTIFF LibTIFF 3.8 LibTIFF LibTIFF 3.7.3 LibTIFF LibTIFF 3.7.2 LibTIFF LibTIFF 3.7.1 LibTIFF LibTIFF 3.7 LibTIFF LibTIFF 3.6.1 LibTIFF LibTIFF 3.6 .0 LibTIFF LibTIFF 3.5.7 LibTIFF LibTIFF 3.5.5 LibTIFF LibTIFF 3.5.4 LibTIFF LibTIFF 3.5.3 LibTIFF LibTIFF 3.5.2 LibTIFF LibTIFF 3.5.1 LibTIFF LibTIFF 3.4 Gentoo Linux |
| Not Vulnerable: | |
Discussion
LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
The LibTIFF library is prone to a denial-of-service vulnerability. The library fails to handle exceptional conditions.
Successful exploits of this vulnerability will cause the application using the affected library to crash, effectively denying service to legitimate users.
Version 3.8.0 and prior are considered vulnerable to this issue.
The LibTIFF library is prone to a denial-of-service vulnerability. The library fails to handle exceptional conditions.
Successful exploits of this vulnerability will cause the application using the affected library to crash, effectively denying service to legitimate users.
Version 3.8.0 and prior are considered vulnerable to this issue.
Exploit / POC
LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
Solution:
Currently we are not aware of any official vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Please see the referenced third-party vendor advisories for further information.
Solution:
Currently we are not aware of any official vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Please see the referenced third-party vendor advisories for further information.
References
LibTIFF TIFFFetchShortPair Null Pointer Dereference Denial of Service Vulnerability
References:
References:
- LibTIFF Homepage (LibTIFF)