7.5
CVSSv2

CVE-2004-0803

Published: 23/12/2004 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and previous versions, related to buffer overflows and integer overflows, allow remote malicious users to execute arbitrary code via TIFF files.

Vulnerable Product Search on Vulmon Subscribe to Product

libtiff libtiff 3.6.1

pdflib pdf library 5.0.2

wxgtk2 wxgtk2 2.5 .0

libtiff libtiff 3.4

libtiff libtiff 3.5.7

libtiff libtiff 3.6.0

libtiff libtiff 3.5.3

libtiff libtiff 3.5.4

libtiff libtiff 3.5.2

libtiff libtiff 3.5.5

libtiff libtiff 3.5.1

suse suse linux 9.0

redhat enterprise linux 2.1

redhat fedora core core 2.0

apple mac os x server 10.3.2

apple mac os x 10.2.5

trustix secure linux 2.0

apple mac os x server 10.2.2

redhat enterprise linux desktop 3.0

apple mac os x 10.2.7

apple mac os x 10.2.8

apple mac os x server 10.2.4

redhat linux advanced workstation 2.1

kde kde 3.3.1

apple mac os x 10.2.1

suse suse linux 8.2

redhat enterprise linux 3.0

apple mac os x server 10.3.5

apple mac os x 10.3.1

suse suse linux 8

kde kde 3.2.2

suse suse linux 1.0

kde kde 3.2.1

apple mac os x 10.3.5

apple mac os x server 10.3.3

apple mac os x server 10.2.7

apple mac os x server 10.2.3

apple mac os x 10.2.4

apple mac os x server 10.3.4

trustix secure linux 1.5

apple mac os x 10.3.2

apple mac os x 10.2.2

apple mac os x server 10.2.5

suse suse linux 9.1

apple mac os x 10.3.6

apple mac os x server 10.3

apple mac os x server 10.2.6

apple mac os x server 10.2

apple mac os x server 10.2.1

apple mac os x server 10.3.1

kde kde 3.3

mandrakesoft mandrake linux 10.0

apple mac os x 10.3.4

apple mac os x 10.3.3

apple mac os x 10.2.6

trustix secure linux 2.1

kde kde 3.2

kde kde 3.2.3

apple mac os x 10.2.3

apple mac os x server 10.2.8

apple mac os x 10.2

suse suse linux 8.1

apple mac os x 10.3

apple mac os x server 10.3.6

Vendor Advisories

Synopsis libtiff security update Type/Severity Security Advisory: Important Topic Updated libtiff packages that fix various buffer and integer overflows arenow available Description The libtiff package contains a library of functions for manipulating TIFF(Tagged Image File Format) image fo ...
Synopsis kdegraphics security update Type/Severity Security Advisory: Moderate Topic Updated kdegraphics packages that resolve multiple security issues in kfaxare now availableThis update has been rated as having moderate security impact by the RedHat Security Response Team Description The ...
Synopsis tetex security update Type/Severity Security Advisory: Moderate Topic Updated tetex packages that fix several integer overflows are now availableThis update has been rated as having moderate security impact by the RedHat Security Response Team Description TeTeX is an implementati ...
Several problems have been discovered in libtiff, the Tag Image File Format library for processing TIFF graphics files An attacker could prepare a specially crafted TIFF graphic that would cause the client to execute arbitrary code or crash The Common Vulnerabilities and Exposures Project has identified the following problems: CAN-2004-0803 ...