|
|
| |
|
| |
tiff: arbitrary code execution
| Package(s): | tiff |
CVE #(s): | |
| Created: | June 15, 2010 |
Updated: | June 16, 2010 |
| Description: |
From the Pardus advisory:
Multiple integer overflows in the handling of TIFF files may result in a
heap buffer overflow. Opening a maliciously crafted TIFF file may lead
to an unexpected application termination or arbitrary code execution.
These issues are addressed through improved bounds checking. Credit to
Kevin Finisterre of digitalmunition.com for reporting this issue. |
| Alerts: |
|
( Log in to post comments)
|
|
|