CVE Vulnerabilities

CVE-2019-7663

Published: Feb 09, 2019 | Modified: Aug 24, 2020
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:N
Ubuntu
MEDIUM

An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted tiff file. This is different from CVE-2018-12900.

Affected Software

Name Vendor Start Version End Version
Libtiff Libtiff 4.0.10 (including) 4.0.10 (including)
Gdal Ubuntu esm-apps/xenial *
Gdal Ubuntu esm-infra-legacy/trusty *
Gdal Ubuntu trusty *
Gdal Ubuntu trusty/esm *
Gdal Ubuntu xenial *
Openjpeg2 Ubuntu cosmic *
Openjpeg2 Ubuntu upstream *
Qt4-x11 Ubuntu cosmic *
Qt4-x11 Ubuntu trusty *
Qtimageformats-opensource-src Ubuntu bionic *
Qtimageformats-opensource-src Ubuntu cosmic *
Qtimageformats-opensource-src Ubuntu disco *
Qtimageformats-opensource-src Ubuntu eoan *
Qtimageformats-opensource-src Ubuntu groovy *
Qtimageformats-opensource-src Ubuntu hirsute *
Qtimageformats-opensource-src Ubuntu impish *
Qtimageformats-opensource-src Ubuntu kinetic *
Qtimageformats-opensource-src Ubuntu lunar *
Qtimageformats-opensource-src Ubuntu mantic *
Qtimageformats-opensource-src Ubuntu trusty *
Qtimageformats-opensource-src Ubuntu xenial *
Qtwebengine-opensource-src Ubuntu bionic *
Qtwebengine-opensource-src Ubuntu cosmic *
Qtwebengine-opensource-src Ubuntu disco *
Qtwebengine-opensource-src Ubuntu eoan *
Qtwebengine-opensource-src Ubuntu groovy *
Qtwebengine-opensource-src Ubuntu hirsute *
Qtwebengine-opensource-src Ubuntu impish *
Qtwebengine-opensource-src Ubuntu kinetic *
Qtwebengine-opensource-src Ubuntu lunar *
Qtwebengine-opensource-src Ubuntu mantic *
Texmaker Ubuntu bionic *
Texmaker Ubuntu cosmic *
Texmaker Ubuntu disco *
Texmaker Ubuntu eoan *
Texmaker Ubuntu groovy *
Texmaker Ubuntu hirsute *
Texmaker Ubuntu impish *
Texmaker Ubuntu kinetic *
Texmaker Ubuntu lunar *
Texmaker Ubuntu mantic *
Texmaker Ubuntu trusty *
Texmaker Ubuntu xenial *
Tiff Ubuntu bionic *
Tiff Ubuntu cosmic *
Tiff Ubuntu trusty *
Tiff Ubuntu upstream *
Tiff Ubuntu xenial *

References