LibTIFF 4.0.8 has multiple memory leak vulnerabilities, which allow malicious users to cause a denial of service (memory consumption), as demonstrated by tif_open.c, tif_lzw.c, and tif_aux.c. NOTE: Third parties were unable to reproduce the issue
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libtiff libtiff 4.0.8 |
||
opensuse leap 42.3 |
||
opensuse leap 42.2 |
||
suse linux enterprise software development kit 12 |
||
suse linux enterprise desktop 12 |
||
suse linux enterprise server 12 |