CVE-2010-2481 PUBLISHED CVSS 4.300000190734863 MEDIUM

The TIFFExtractData macro in LibTIFF before 3.9.4 does not properly handle unknown tag types in TIFF directory entries, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted TIFF file.

EPSS 1.61% · 81.6th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
1.61%
81.6th percentile

Affected Products

VendorProductVersions
libtifflibtiff3.9.2, 0, 3.4
n/an/an/a

Timeline

References

Open in Interactive Console →