VDB
GCVE-VVD-MAGEIA-2019-101
GCVE-VVD-MAGEIA-2019-101
Advisory Published
An Invalid Address dereference was discovered in
TIFFWriteDirectoryTagTransferfunction in libtiff/tif_dirwrite.c in LibTIFF
4.0.10, affecting the cpSeparateBufToContigBuf function in tiffcp.c.
Remote attackers could leverage this vulnerability to cause a
denial-of-service via a crafted tiff file. This is different from
CVE-2018-12900. (CVE-2019-7663)
The invertImage() function in tiffcrop.c:9206 allows remote attackers to
cause a denial of service (heap buffer overflow) via invert color space.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | libtiff | 0 (affected), 4.0.10-1.git20190219.1.mga6 (unaffected), 0 (affected), 4.0.10-1.git20190219.1.mga6 (unaffected) | — |
| Mageia | cntlm | 0 (affected), 0.92.3-2.1.mga7 (unaffected) | — |
References
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.