CVE Vulnerabilities

CVE-2018-7456

NULL Pointer Dereference

Published: Feb 24, 2018 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
3.3 LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

A NULL Pointer Dereference occurs in the function TIFFPrintDirectory in tif_print.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4.0.8 and 4.0.9 when using the tiffinfo tool to print crafted TIFF information, a different vulnerability than CVE-2017-18013. (This affects an earlier part of the TIFFPrintDirectory function that was not addressed by the CVE-2017-18013 patch.)

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
LibtiffLibtiff4.0.9 (including)4.0.9 (including)
Red Hat Enterprise Linux 7RedHatcompat-libtiff3-0:3.9.4-12.el7*
Red Hat Enterprise Linux 7RedHatlibtiff-0:4.0.3-32.el7*
TiffUbuntuartful*
TiffUbuntuesm-infra-legacy/trusty*
TiffUbuntuesm-infra/xenial*
TiffUbuntuprecise/esm*
TiffUbuntutrusty*
TiffUbuntutrusty/esm*
TiffUbuntuupstream*
TiffUbuntuxenial*

Potential Mitigations

References