4.3
CVSSv2

CVE-2010-2598

Published: 02/07/2010 Updated: 08/11/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows remote malicious users to cause a denial of service via a crafted TIFF image, related to "downsampled OJPEG input."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux 3

redhat enterprise linux 3.0

Vendor Advisories

Certain applications could be made to run programs as your login if they opened a specially crafted TIFF file ...
Fix regression in CCITTFAX4 processing ...