CVE-2010-2482 PUBLISHED CVSS 4.300000190734863 MEDIUM

LibTIFF 3.9.4 and earlier does not properly handle an invalid td_stripbytecount field, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted TIFF file, a different vulnerability than CVE-2010-2443.

EPSS 18.83% · 95.2th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
18.83%
95.2th percentile

Affected Products

VendorProductVersions
n/an/an/a
libtifflibtiff0, 3.4, 3.4

Timeline

References

Open in Interactive Console →