A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2021-03-09 20:15
Updated : 2024-11-21 05:27
NVD link : CVE-2020-35524
Mitre link : CVE-2020-35524
CVE.ORG link : CVE-2020-35524
JSON object : View
Products Affected
libtiff
- libtiff
debian
- debian_linux
fedoraproject
- fedora
redhat
- enterprise_linux
netapp
- ontap_select_deploy_administration_utility
CWE
CWE-787
Out-of-bounds Write