Heap-based buffer overflow in the OJPEGVSetField function in tif_ojpeg.c for libtiff 3.6.1 and previous versions, when compiled with the OJPEG_SUPPORT (old JPEG support) option, allows remote malicious users to execute arbitrary code via a malformed TIFF image.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libtiff libtiff 3.6.1 |
||
suse suse linux 9.0 |
||
suse suse linux 9.1 |
||
suse suse linux 8.2 |
||
suse suse linux 8 |
||
suse suse linux 1.0 |
||
suse suse linux 8.1 |