A null pointer dereference issue was found in Libtiffs tif_dir.c file. This issue may allow an attacker to pass a crafted TIFF image file to the tiffcp utility which triggers a runtime error that causes undefined behavior. This will result in an application crash, eventually leading to a denial of service.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libtiff | Libtiff | * | 4.5.0 (including) |
Tiff | Ubuntu | bionic | * |
Tiff | Ubuntu | esm-infra/bionic | * |
Tiff | Ubuntu | esm-infra/xenial | * |
Tiff | Ubuntu | focal | * |
Tiff | Ubuntu | jammy | * |
Tiff | Ubuntu | kinetic | * |
Tiff | Ubuntu | lunar | * |
Tiff | Ubuntu | trusty | * |
Tiff | Ubuntu | trusty/esm | * |
Tiff | Ubuntu | upstream | * |
Tiff | Ubuntu | xenial | * |