The _TIFFVGetField function in tif_dir.c in libtiff 4.0.6 allows attackers to cause a denial of service (invalid memory write and crash) or possibly have unspecified other impact via crafted field data in an extension tag in a TIFF image.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libtiff | Libtiff | 4.0.6 (including) | 4.0.6 (including) |