Alerts This Week
Warning Icon 1 631
Alerts This Week
Warning Icon 1 631

Mageia: 2018-0493 Moderate: libtiff Denial Of Service Issue

mageia
Calendar Grey December 30, 2018
Dist Mageia Esm H88
Mageia 2021-0176 resolves vulnerabilities in libjpeg with an enhancement for memory leak concerns and integer overflow problems.
Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (crash) or possibly have unspe...

Summary

Heap-based buffer overflow in the cpSeparateBufToContigBuf function in tiffcp.c in LibTIFF 4.0.9 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via a crafted TIFF file. (CVE-2018-12900)
LibTIFF 4.0.9 (with JBIG enabled) decodes arbitrarily-sized JBIG into a buffer, ignoring the buffer size, which leads to a tif_jbig.c JBIGDecode out-of-bounds write. (CVE-2018-18557)
In LibTIFF 4.0.9, there is a NULL pointer dereference in the TIFFWriteDirectorySec function in tif_dirwrite.c that will lead to a denial of service attack, as demonstrated by tiffset. (CVE-2018-19210)

References

- https://bugs.mageia.org/show_bug.cgi?id=24053

- https://lists.debian.org/debian-security-announce/2018/msg00281.html

- - - https://www.cve.org/CVERecord?id=CVE-2018-12900

- https://www.cve.org/CVERecord?id=CVE-2018-18557

- https://www.cve.org/CVERecord?id=CVE-2018-19210

Resolution

SRPMS

- 6/core/libtiff-4.0.9-1.9.mga6

Publication date: 29 Dec 2018
URL: https://advisories.mageia.org/MGASA-2018-0493.html
Type: security
CVE: CVE-2018-12900, CVE-2018-18557, CVE-2018-19210

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here