VDB

CVE-2019-7663

CVE-2019-7663 PUBLISHED

An Invalid Address dereference was discovered in TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF 4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c. Remote attackers could leverage this vulnerability to cause a denial-of-service via a crafted tiff file. This is different from CVE-2018-12900.

EPSS 0.55% · 68.2th percentile

Risk Scores

EPSS Score
0.55%
68.2th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSgdal1.10.1+dfsg-3ubuntu1, 1.10.1+dfsg-3build2, 1.10.1+dfsg-3build1
Ubuntu:18.04:LTSqtwebengine-opensource-src5.9.4+dfsg-0ubuntu1, *, 0
Ubuntu:22.04:LTStexmaker5.0.3-1build8, 0, 5.0.3-1build9
Ubuntu:16.04:LTStexmaker4.4.1-1, 4.4.1-1.1, 0
Ubuntu:25.10qtimageformats-opensource-src5.15.15-3, 5.15.15-4, 0
Ubuntu:22.04:LTSqtwebengine-opensource-src5.15.6+dfsg-1, *, *
Ubuntu:18.04:LTSqtimageformats-opensource-src0, 5.9.2-1, 5.9.2-2
Ubuntu:20.04:LTSqtimageformats-opensource-src5.12.8-0ubuntu1, 5.12.5-1build1, 5.12.5-1
Ubuntu:16.04:LTStiff4.0.6-1ubuntu0.4, 0, 4.0.3-12.3ubuntu2
Ubuntu:25.10qtwebengine-opensource-src*, *, 0
Ubuntu:25.10texmaker5.1.3+dfsg-3, 5.1.3+dfsg-3build1, 0
Ubuntu:20.04:LTSqtwebengine-opensource-src5.12.4+dfsg-1ubuntu1, 5.12.5+dfsg-7, 0
Ubuntu:18.04:LTStexmaker5.0.2-1, 5.0.2-1build2, 5.0.2-1build1
Ubuntu:24.04:LTStexmaker5.1.3+dfsg-1build5, 5.1.3+dfsg-1build7, 5.1.3+dfsg-1build8
Ubuntu:22.04:LTSqtimageformats-opensource-src0, 5.15.2-2, 5.15.3-1
Ubuntu:24.04:LTSqtimageformats-opensource-src5.15.13-1, 5.15.12-1build2, 0
Ubuntu:14.04:LTStiff4.0.3-7ubuntu0.1, 0, 4.0.2-4ubuntu3
Ubuntu:16.04:LTSqtimageformats-opensource-src0, 5.4.2-2build1, 5.5.1-2build1
Ubuntu:16.04:LTSgdal1.11.3+dfsg-2build3, 1.11.3+dfsg-3, 1.11.3+dfsg-3build1
Ubuntu:24.04:LTSqtwebengine-opensource-src5.15.15+dfsg-2, *, *

…and 2 more

Timeline

  • Feb 9, 2019 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›