Use-after-free vulnerability in the t2p_readwrite_pdf_image function in tools/tiff2pdf.c in libtiff 4.0.3 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted TIFF image.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Libtiff | Libtiff | 4.0.3 (including) | 4.0.3 (including) |
| Red Hat Enterprise Linux 5 | RedHat | libtiff-0:3.8.2-19.el5_10 | * |
| Red Hat Enterprise Linux 6 | RedHat | libtiff-0:3.9.4-10.el6_5 | * |
| Tiff | Ubuntu | lucid | * |
| Tiff | Ubuntu | precise | * |
| Tiff | Ubuntu | quantal | * |
| Tiff | Ubuntu | raring | * |
| Tiff | Ubuntu | saucy | * |
| Tiff | Ubuntu | upstream | * |