4.3
CVSSv2

CVE-2010-2631

Published: 06/07/2010 Updated: 15/05/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

LibTIFF 3.9.0 ignores tags in certain situations during the first stage of TIFF file processing and does not properly handle this during the second stage, which allows remote malicious users to cause a denial of service (application crash) via a crafted file, a different vulnerability than CVE-2010-2481.

Vulnerable Product Search on Vulmon Subscribe to Product

libtiff libtiff 3.9.0

Exploits

source: wwwsecurityfocuscom/bid/41477/info LibTIFF is prone to a denial-of-service vulnerability because it fails to properly validate user-supplied input An attacker can exploit this issue to crash an application that uses the vulnerable library, denying service to legitimate users githubcom/offensive-security/exploitdb-bin ...