ID:1260 - Exploit for Memory leak in LibTIFF - CVE-2017-9936

 
Main Vulnerability Database Exploits ID:1260 - Exploit for Memory leak in LibTIFF - CVE-2017-9936

ID:1260 - Exploit for Memory leak in LibTIFF - CVE-2017-9936

Published: March 18, 2020


Vulnerability identifier: #VU7406
Vulnerability risk: Low
CVE-ID: CVE-2017-9936
CWE-ID: CWE-401
Exploitation vector: Remote access
Vulnerable software:
LibTIFF

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to cause DoS condition.

The weakness exits due to memory leak in tif_jbig.c. A remote attacker can send specially crafted TIFF file and cause the application to crash.

Successful exploitation of the vulnerability results in denial of service.

Remediation

Update to version 4.0.8-3.