CVE Vulnerabilities

CVE-2004-0886

Published: Jan 27, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls.

Affected Software

NameVendorStart VersionEnd Version
LibtiffLibtiff3.4 (including)3.4 (including)
LibtiffLibtiff3.5.1 (including)3.5.1 (including)
LibtiffLibtiff3.5.2 (including)3.5.2 (including)
LibtiffLibtiff3.5.3 (including)3.5.3 (including)
LibtiffLibtiff3.5.4 (including)3.5.4 (including)
LibtiffLibtiff3.5.5 (including)3.5.5 (including)
LibtiffLibtiff3.5.7 (including)3.5.7 (including)
LibtiffLibtiff3.6.0 (including)3.6.0 (including)
LibtiffLibtiff3.6.1 (including)3.6.1 (including)
Pdf_libraryPdflib5.0.2 (including)5.0.2 (including)
Wxgtk2Wxgtk2**
Wxgtk2Wxgtk22.5_.0 (including)2.5_.0 (including)
Red Hat Enterprise Linux 3RedHatlibtiff-0:3.5.7-20.1*
Red Hat Enterprise Linux 3RedHatkdegraphics-7:3.1.3-3.7*
Red Hat Enterprise Linux 3RedHattetex-0:1.0.7-67.7*
TiffUbuntudapper*
TiffUbuntudevel*
TiffUbuntuedgy*
TiffUbuntufeisty*

References