Search CVE reports


Toggle filters

81 – 90 of 276 results


CVE-2020-35522

Negligible priority

Some fixes available 4 of 5

In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Fixed Fixed
Show less packages

CVE-2020-35521

Negligible priority

Some fixes available 4 of 5

A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Fixed Fixed
Show less packages

CVE-2020-19144

Negligible priority
Fixed

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the 'in _TIFFmemcpy' funtion in the component 'tif_unix.c'.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Not affected Fixed
Show less packages

CVE-2020-19143

Medium priority
Fixed

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "TIFFVGetField" funtion in the component 'libtiff/tif_dir.c'.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Fixed Not affected
Show less packages

CVE-2020-19131

Negligible priority
Fixed

Buffer Overflow in LibTiff v4.0.10 allows attackers to cause a denial of service via the "invertImage()" function in the component "tiffcrop".

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Not affected Fixed
Show less packages

CVE-2020-18768

Medium priority
Not affected

There exists one heap buffer overflow in _TIFFmemcpy in tif_unix.c in libtiff 4.0.10, which allows an attacker to cause a denial-of-service through a crafted tiff file.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Not affected Not affected
Show less packages

CVE-2019-7663

Medium priority

Some fixes available 4 of 55

An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote attackers could leverage this...

9 affected packages

chromium, texmaker, qtimageformats-opensource-src, qtwebengine-opensource-src, gdal...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium Not in release Not in release Not in release Not in release
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtimageformats-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
gdal Not affected Not affected Not affected Not affected
qt4-x11 Not in release Not in release Not in release Not affected
tiff Not affected Not affected Not affected Fixed
tiff3 Not in release Not in release Not in release Not in release
openjpeg2 Not affected Not affected Not affected Not affected
Show all 9 packages Show less packages

CVE-2019-6128

Low priority
Fixed

The TIFFFdOpen function in tif_unix.c in LibTIFF 4.0.10 has a memory leak, as demonstrated by pal2rgb.

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Fixed
Show less packages

CVE-2019-17546

Medium priority

Some fixes available 5 of 60

tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an integer overflow that potentially causes a heap-based buffer overflow via a crafted RGBA image, related to a "Negative-size-param"...

17 affected packages

blender, chromium-browser, ivtools, xloadimage, neuron...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
blender Not affected Not affected Not affected Not affected
chromium-browser Not affected Not affected Not in release Not affected
ivtools Not affected Not affected Not affected Not affected
xloadimage Not affected Not affected Not affected Not affected
neuron Not affected Needs evaluation Needs evaluation Needs evaluation
openjpeg2 Not affected Not affected Not affected Not affected
qt4-x11 Not in release Not in release Not in release Not affected
tiff Not affected Not affected Not affected Fixed
qtimageformats-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
qtwebengine-opensource-src Needs evaluation Needs evaluation Needs evaluation Needs evaluation
texmaker Needs evaluation Needs evaluation Needs evaluation Needs evaluation
insighttoolkit4 Not in release Not affected Not affected Not affected
gdal Not affected Not affected Not affected Not affected
libtk-img Not affected Not affected Not affected Not affected
paraview Not affected Not affected Not affected Not affected
povray Not affected Not affected Not affected Not affected
sfftobmp Not affected Not affected Not affected Not affected
Show all 17 packages Show less packages

CVE-2019-14973

Low priority
Fixed

_TIFFCheckMalloc and _TIFFCheckRealloc in tif_aux.c in LibTIFF through 4.0.10 mishandle Integer Overflow checks because they rely on compiler behavior that is undefined by the applicable C standards. This can, for example, lead to...

1 affected package

tiff

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tiff Not affected Not affected Fixed
Show less packages