|
LibTIFF TIFFFindFieldInfo Remote Buffer Overflow Vulnerability
LibTIFF is prone to a buffer-overflow vulnerability because the library fails to do proper boundary checks before copying user-supplied data into a finite-sized buffer. This issue allows remote attackers to execute arbitrary machine code in the context of appications using the affected library. Failed exploit attempts will likely crash the application, denying service to legitimate users. This issue is known to affect versions of LibTIFF included with Sony PSP devices running firmware versions 2.0 through 2.8. Specific information regarding affected versions of LibTIFF is currently unavailable. We will update this BID as more information emerges. |
|
|
Privacy Statement |