Wind River Support Network

HomeDefectsLIN9-3972
Fixed

LIN9-3972 : Security Advisory - tiff - CVE-2017-7593

Created: Apr 12, 2017    Updated: May 29, 2018
Resolved Date: Dec 26, 2017
Found In Version: 9.0.0.5
Fix Version: 9.0.0.6
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

tif_read.c in LibTIFF 4.0.7 does not ensure that tif_rawdata is properly initialized, which might allow remote attackers to obtain sensitive information from process memory via a crafted image.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-7593

Other Downloads


CVEs


Live chat
Online