LibTIFF CVE-2018-17795 Heap Based Buffer Overflow Vulnerability

LibTIFF is prone to a heap-based buffer-overflow vulnerability.

An attacker can exploit this issue to cause a denial-of-service condition. Due to the nature of this issue, code execution may be possible but this has not been confirmed.

LibTIFF 4.0.9 is vulnerable; other versions may also be affected.


Bugtraq ID: 105445
Class: Boundary Condition Error
CVE: CVE-2018-17795

Remote: Yes
Local: No
Published: Oct 02 2018 12:00AM
Updated: Oct 02 2018 12:00AM
Credit: Cheng Wen
Vulnerable: LibTIFF LibTIFF 4.0.9

Not Vulnerable:


The researcher who discovered this issue has created a proof-of-concept. Please see the references for more information.

Related Posts