The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used, allows remote attackers to cause a denial of service (buffer over-read) via a crafted BMP image.
{ "binaries": [ { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff-opengl" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff-tools" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff4-dev" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff5" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff5-alt-dev" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiff5-dev" }, { "binary_version": "4.0.3-7ubuntu0.11+esm15", "binary_name": "libtiffxx5" } ] }
{ "binaries": [ { "binary_version": "4.0.6-1ubuntu0.8+esm18", "binary_name": "libtiff-opengl" }, { "binary_version": "4.0.6-1ubuntu0.8+esm18", "binary_name": "libtiff-tools" }, { "binary_version": "4.0.6-1ubuntu0.8+esm18", "binary_name": "libtiff5" }, { "binary_version": "4.0.6-1ubuntu0.8+esm18", "binary_name": "libtiff5-dev" }, { "binary_version": "4.0.6-1ubuntu0.8+esm18", "binary_name": "libtiffxx5" } ] }