CVE-2016-3623 PUBLISHED

The rgb2ycbcr tool in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (divide-by-zero) by setting the (1) v or (2) h parameter to 0.

EPSS 1.59% · 81.5th percentile

Risk Scores

EPSS Score
1.59%
81.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTStiff0, 4.0.3-12.3ubuntu2, 4.0.5-1
Ubuntu:14.04:LTStiff4.0.3-6ubuntu1, 4.0.3-7, 4.0.3-7ubuntu0.1

Timeline

References

Open in Interactive Console →