CVE-2016-9297 PUBLISHED

The TIFFFetchNormalTag function in LibTiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted TIFF_SETGET_C16ASCII or TIFF_SETGET_C32_ASCII tag values.

EPSS 0.59% · 69.0th percentile

Risk Scores

EPSS Score
0.59%
69.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTStiff0, 4.0.3-12.3ubuntu2, 4.0.5-1
Ubuntu:14.04:LTStiff4.0.3-6ubuntu1, 4.0.3-7, 4.0.3-7ubuntu0.1

Timeline

References

Open in Interactive Console →