LibTIFF before 4.0.7 allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted tiff file.
References
| Link | Resource |
|---|---|
| http://seclists.org/oss-sec/2015/q3/601 | Mailing List Third Party Advisory |
| http://www.securityfocus.com/bid/76843 | Third Party Advisory VDB Entry |
| https://bugzilla.redhat.com/show_bug.cgi?id=1265998 | Issue Tracking Third Party Advisory |
| https://security-tracker.debian.org/tracker/CVE-2015-7313 | Third Party Advisory |
| https://security.gentoo.org/glsa/201701-16 | Third Party Advisory |
| https://ubuntu.com/security/CVE-2015-7313 | Third Party Advisory |
| http://seclists.org/oss-sec/2015/q3/601 | Mailing List Third Party Advisory |
| http://www.securityfocus.com/bid/76843 | Third Party Advisory VDB Entry |
| https://bugzilla.redhat.com/show_bug.cgi?id=1265998 | Issue Tracking Third Party Advisory |
| https://security.gentoo.org/glsa/201701-16 | Third Party Advisory |
Configurations
History
27 Aug 2025, 15:13
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:libtiff:libtiff:*:*:*:*:*:*:*:* | |
| References | () https://security-tracker.debian.org/tracker/CVE-2015-7313 - Third Party Advisory | |
| References | () https://ubuntu.com/security/CVE-2015-7313 - Third Party Advisory |
26 Aug 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) LibTIFF before 4.0.7 allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted tiff file. | |
| References |
|
Information
Published : 2017-03-17 14:59
Updated : 2025-08-27 16:16
NVD link : CVE-2015-7313
Mitre link : CVE-2015-7313
CVE.ORG link : CVE-2015-7313
JSON object : View
Products Affected
libtiff
- libtiff
CWE
CWE-399
Resource Management Errors
