~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
PublicDate: 2006-04-25
Candidate: CVE-2006-2025
References:
 http://www.ubuntu.com/usn/usn-277-1
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2025
Description:
 Integer overflow in the TIFFFetchData function in tif_dirread.c for libtiff
 before 3.8.1 allows context-dependent attackers to cause a denial of
 service and possibly execute arbitrary code via a crafted TIFF image.
Ubuntu-Description:
Notes:
Bugs:
dapper_tiff: released (3.7.4-1ubuntu3.2)
edgy_tiff: not-affected
feisty_tiff: not-affected
upstream_tiff: