7.5
CVSSv2

CVE-2004-0803

Published: 23/12/2004 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and previous versions, related to buffer overflows and integer overflows, allow remote malicious users to execute arbitrary code via TIFF files.

Vulnerable Product Search on Vulmon Subscribe to Product

libtiff libtiff 3.4

libtiff libtiff 3.5.1

libtiff libtiff 3.5.2

pdflib pdf library 5.0.2

wxgtk2 wxgtk2 2.5_.0

libtiff libtiff 3.6.0

libtiff libtiff 3.6.1

libtiff libtiff 3.5.3

libtiff libtiff 3.5.4

libtiff libtiff 3.5.5

libtiff libtiff 3.5.7

apple mac os x 10.2.5

apple mac os x 10.2.6

apple mac os x 10.3.5

apple mac os x 10.3.6

apple mac os x server 10.2.6

apple mac os x server 10.2.7

apple mac os x server 10.3.5

apple mac os x server 10.3.6

mandrakesoft mandrake linux 10.0

redhat enterprise linux 2.1

redhat enterprise linux 3.0

suse suse linux 8.2

suse suse linux 8

apple mac os x 10.2.3

apple mac os x 10.2.4

apple mac os x 10.3.2

apple mac os x 10.3.3

apple mac os x 10.3.4

apple mac os x server 10.2.4

apple mac os x server 10.2.5

apple mac os x server 10.3.3

apple mac os x server 10.3.4

kde kde 3.3.1

suse suse linux 1.0

suse suse linux 8.1

trustix secure linux 2.1

apple mac os x 10.2

apple mac os x 10.2.7

apple mac os x 10.2.8

apple mac os x server 10.2

apple mac os x server 10.2.1

apple mac os x server 10.2.8

apple mac os x server 10.3

kde kde 3.2

kde kde 3.2.1

redhat enterprise linux desktop 3.0

redhat fedora core core_2.0

suse suse linux 9.0

suse suse linux 9.1

apple mac os x 10.2.1

apple mac os x 10.2.2

apple mac os x 10.3

apple mac os x 10.3.1

apple mac os x server 10.2.2

apple mac os x server 10.2.3

apple mac os x server 10.3.1

apple mac os x server 10.3.2

kde kde 3.2.2

kde kde 3.2.3

kde kde 3.3

redhat linux advanced workstation 2.1

trustix secure linux 1.5

trustix secure linux 2.0

Vendor Advisories

Synopsis kdegraphics security update Type/Severity Security Advisory: Moderate Topic Updated kdegraphics packages that resolve multiple security issues in kfaxare now availableThis update has been rated as having moderate security impact by the RedHat Security Response Team Description The ...
Synopsis libtiff security update Type/Severity Security Advisory: Important Topic Updated libtiff packages that fix various buffer and integer overflows arenow available Description The libtiff package contains a library of functions for manipulating TIFF(Tagged Image File Format) image fo ...
Synopsis tetex security update Type/Severity Security Advisory: Moderate Topic Updated tetex packages that fix several integer overflows are now availableThis update has been rated as having moderate security impact by the RedHat Security Response Team Description TeTeX is an implementati ...
Several problems have been discovered in libtiff, the Tag Image File Format library for processing TIFF graphics files An attacker could prepare a specially crafted TIFF graphic that would cause the client to execute arbitrary code or crash The Common Vulnerabilities and Exposures Project has identified the following problems: CAN-2004-0803 ...