The _TIFFVGetField function in tif_dirinfo.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) or execute arbitrary code via a crafted TIFF image.
References
Configurations
History
No history.
Information
Published : 2016-09-21 18:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-3632
Mitre link : CVE-2016-3632
CVE.ORG link : CVE-2016-3632
JSON object : View
Products Affected
libtiff
- libtiff
oracle
- vm_server
CWE
CWE-787
Out-of-bounds Write