Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
20 Nov 2024, 23:49
Type | Values Removed | Values Added |
---|---|---|
References | () http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000888 - | |
References | () http://marc.info/?l=bugtraq&m=109778785107450&w=2 - | |
References | () http://scary.beasts.org/security/CESA-2004-006.txt - | |
References | () http://secunia.com/advisories/12818 - | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-26-101677-1 - | |
References | () http://sunsolve.sun.com/search/document.do?assetkey=1-66-201072-1 - | |
References | () http://www.debian.org/security/2004/dsa-567 - Patch, Vendor Advisory | |
References | () http://www.gentoo.org/security/en/glsa/glsa-200410-11.xml - | |
References | () http://www.kb.cert.org/vuls/id/948752 - Third Party Advisory, US Government Resource | |
References | () http://www.kde.org/info/security/advisory-20041209-2.txt - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2004:109 - | |
References | () http://www.mandriva.com/security/advisories?name=MDKSA-2005:052 - | |
References | () http://www.novell.com/linux/security/advisories/2004_38_libtiff.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2004-577.html - Patch, Vendor Advisory | |
References | () http://www.redhat.com/support/errata/RHSA-2005-021.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2005-354.html - | |
References | () http://www.securityfocus.com/bid/11406 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17703 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100114 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8896 - |
Information
Published : 2004-12-23 05:00
Updated : 2024-11-20 23:49
NVD link : CVE-2004-0803
Mitre link : CVE-2004-0803
CVE.ORG link : CVE-2004-0803
JSON object : View
Products Affected
apple
- mac_os_x_server
- mac_os_x
trustix
- secure_linux
redhat
- enterprise_linux
- enterprise_linux_desktop
- fedora_core
- linux_advanced_workstation
kde
- kde
wxgtk2
- wxgtk2
pdflib
- pdf_library
mandrakesoft
- mandrake_linux
libtiff
- libtiff
suse
- suse_linux
CWE