Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libtiff | Libtiff | 4.0.3 (including) | 4.0.3 (including) |
Tiff | Ubuntu | lucid | * |
Tiff | Ubuntu | precise | * |
Tiff | Ubuntu | quantal | * |
Tiff | Ubuntu | raring | * |
Tiff | Ubuntu | saucy | * |
Tiff | Ubuntu | upstream | * |
Red Hat Enterprise Linux 5 | RedHat | libtiff-0:3.8.2-19.el5_10 | * |
Red Hat Enterprise Linux 6 | RedHat | libtiff-0:3.9.4-10.el6_5 | * |