CVE-2010-2630 PUBLISHED CVSS 4.300000190734863 MEDIUM

The TIFFReadDirectory function in LibTIFF 3.9.0 does not properly validate the data types of codec-specific tags that have an out-of-order position in a TIFF file, which allows remote attackers to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2010-2481.

EPSS 3.94% · 88.2th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
3.94%
88.2th percentile

Affected Products

VendorProductVersions
libtifflibtiff3.9.0
n/an/an/a

Timeline

References

Open in Interactive Console →