VDB
CVE-2023-41334
CVE-2023-41334
PUBLISHED
KEV
In LibTIFF 4.0.8, there is a memory malloc failure in tif_jbig.c. A crafted TIFF document can lead to an abort resulting in a remote denial of service attack.
EPSS 1.12% · 63.2th percentile
Risk Scores
EPSS Score
1.12%
63.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | * |
Timeline
- Jun 9, 2023 PoC Published
- Jul 15, 2023 PoC Published
- Oct 5, 2023 PoC Published
- Nov 4, 2023 PoC Published
- Dec 8, 2023 PoC Published
- Mar 1, 2024 PoC Published
- Mar 18, 2024 CVE Published
- Mar 19, 2024 EPSS Score
- Apr 5, 2024 PoC Published
- Apr 14, 2024 EPSS Score
- May 22, 2024 PoC Published
- Jun 5, 2024 EPSS Score
References
- https://www.ibm.com/support/pages/node/7177142 advisory
- https://www.ibm.com/support/pages/node/7177223 advisory
- https://www.ibm.com/support/pages/node/7179044 advisory
- https://www.ibm.com/support/pages/node/7179156 advisory
- https://www.ibm.com/support/pages/node/7179166 advisory
- https://www.ibm.com/support/pages/node/7178835 advisory
- http://bugzilla.maptools.org/show_bug.cgi?id=2707 url
- 99304 vdb
- [mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar mailing-list