LWN.net Logo

libtiff: denial of service

Package(s):libtiff CVE #(s):CVE-2010-2598
Created:July 8, 2010 Updated:March 15, 2011
Description:

From the Red Hat advisory:

An input validation flaw was discovered in libtiff. An attacker could use this flaw to create a specially-crafted TIFF file that, when opened, would cause an application linked against libtiff to crash. (CVE-2010-2598)

Alerts:
Ubuntu USN-1085-2 2011-03-15
Ubuntu USN-1085-1 2011-03-07
CentOS CESA-2010:0520 2010-08-16
Red Hat RHSA-2010:0520-01 2010-07-08

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds