Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
20 Nov 2024, 23:49
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000888 - | |
| References | () http://marc.info/?l=bugtraq&m=109778785107450&w=2 - | |
| References | () http://scary.beasts.org/security/CESA-2004-006.txt - | |
| References | () http://secunia.com/advisories/12818 - | |
| References | () http://sunsolve.sun.com/search/document.do?assetkey=1-26-101677-1 - | |
| References | () http://sunsolve.sun.com/search/document.do?assetkey=1-66-201072-1 - | |
| References | () http://www.debian.org/security/2004/dsa-567 - Patch, Vendor Advisory | |
| References | () http://www.gentoo.org/security/en/glsa/glsa-200410-11.xml - | |
| References | () http://www.kb.cert.org/vuls/id/948752 - Third Party Advisory, US Government Resource | |
| References | () http://www.kde.org/info/security/advisory-20041209-2.txt - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2004:109 - | |
| References | () http://www.mandriva.com/security/advisories?name=MDKSA-2005:052 - | |
| References | () http://www.novell.com/linux/security/advisories/2004_38_libtiff.html - | |
| References | () http://www.redhat.com/support/errata/RHSA-2004-577.html - Patch, Vendor Advisory | |
| References | () http://www.redhat.com/support/errata/RHSA-2005-021.html - | |
| References | () http://www.redhat.com/support/errata/RHSA-2005-354.html - | |
| References | () http://www.securityfocus.com/bid/11406 - | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17703 - | |
| References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100114 - | |
| References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8896 - |
Information
Published : 2004-12-23 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-0803
Mitre link : CVE-2004-0803
CVE.ORG link : CVE-2004-0803
JSON object : View
Products Affected
pdflib
- pdf_library
libtiff
- libtiff
apple
- mac_os_x
- mac_os_x_server
wxgtk2
- wxgtk2
mandrakesoft
- mandrake_linux
redhat
- enterprise_linux_desktop
- linux_advanced_workstation
- enterprise_linux
- fedora_core
trustix
- secure_linux
kde
- kde
suse
- suse_linux
CWE
