Known vulnerabilities in tiff (Debian package) 4.0.8-2+deb9u1
Vendor:
Debian
Software:
tiff (Debian package)
Version:
4.0.8-2+deb9u1
Software CPE:
cpe:2.3:o:debian:tiff_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
13
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
4.7.0-3+deb13u2
4.5.0-6+deb12u4
4.7.0-3+deb13u3
4.7.0-3+deb13u1
4.5.0-6+deb12u3
4.5.0-6+deb12u1
4.2.0-1+deb11u5
4.2.0-1+deb11u4
4.2.0-1+deb11u3
4.2.0-1+deb11u1
4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u3
4.1.0+git191117-2~deb10u2
4.2.0
4.2.0-1
4.1.0+git201212
4.1.0+git201212-1
4.0.8-2+deb9u5
4.1.0+git191117
4.0.8
4.0.3
4.1.0+git191117-2~deb10u1
4.1.0+git191117-2
4.0.3-12.3+deb8u10
4.1.0-1
4.1.0+git191117-1
4.0.10+git191003-1
4.0.10+git190903-1
4.0.3-12.3+deb8u9
4.0.10+git190814-1
4.0.10+git190818-1
4.0.3-12.3+deb8u8
4.0.10-4
4.0.8-2+deb9u3
4.0.8-2+deb9u4
4.0.10-3
4.0.10-1
4.0.10-2
3.5.5-6.woody3
3.5.5-6.woody5
3.5.5-7
3.5.5-7woody1
3.5.5-7woody2
3.7.2-3sarge1
3.7.2-4
3.7.2-5
3.7.2-6
3.7.2-7
3.8.2-7+etch3
3.8.2-11.2
3.8.2-11.3
3.8.2-11.4
3.8.2-11.5
4.0.2-6+deb7u6
4.0.2-6+deb7u7
4.0.2-6+deb7u8
4.0.2-6+deb7u9
4.0.2-6+deb7u10
4.0.2-6+deb7u11
4.0.2-6+deb7u12
4.0.2-6+deb7u13
4.0.2-6+deb7u14
4.0.2-6+deb7u15
4.0.2-6+deb7u16
4.0.2-6+deb7u17
4.0.2-6+deb7u18
4.0.2-6+deb7u19
4.0.2-6+deb7u20
4.0.2-6+deb7u21
4.0.3-12.3+deb8u6
4.0.3-12.3+deb8u7
4.0.9-6
4.0.9+git181026-1
4.0.9-5
4.0.9-4
4.0.9-3
4.0.9-2
4.0.9-1
4.0.8-6
4.0.8-5
4.0.8-2+deb9u2
4.0.3-12.3+deb8u5
4.0.8-3
4.0.8-4
3.9.4-5+squeeze1
3.9.4-5+squeeze2
3.9.4-5+squeeze3
3.9.4-5+squeeze4
3.9.4-5+squeeze5
3.9.4-5+squeeze6
3.9.4-5+squeeze7
3.9.4-5+squeeze8
3.9.4-5+squeeze9
3.9.4-5+squeeze10
3.9.4-5+squeeze11
3.9.4-5+squeeze12
3.9.4-5+squeeze13
3.9.4-5+squeeze14
4.0.3-13
4.0.5-1
4.0.6-1
4.0.6-2
4.0.6-3
4.0.7-1
4.0.7-2
4.0.7-3
4.0.7-4
4.0.7-5
4.0.7-6
4.0.7-7
4.0.8-1
4.0.8-2
4.0.8-2+deb9u1
4.0.3-12.3+deb8u1
4.0.3-12.3+deb8u2
4.0.3-12.3+deb8u3
4.0.3-12.3+deb8u4
4.0.2-6+nmu1
4.0.3-1
4.0.3-2
4.0.3-3
4.0.3-4
4.0.3-5
4.0.3-6
4.0.3-7
4.0.3-8
4.0.3-9
4.0.3-10
4.0.3-11
4.0.3-12
4.0.3-12.1
4.0.3-12.2
4.0.3-12.3
3.5.2-1
3.5.2-2
3.5.2-3
3.5.2-4
3.5.4-1
3.5.4-2
3.5.4-3
3.5.4-4
3.5.4-5
3.5.5-1
3.5.5-2
3.5.5-3
3.5.5-4
3.5.5-5
3.5.5-6
3.5.7-1
3.5.7-2
3.6.1-1
3.6.1-1.1
3.6.1-2
3.6.1-3
3.6.1-4
3.6.1-5
3.7.0-1
3.7.0-2
3.7.1-1
3.7.1-2
3.7.1+pre3.7.2-1
3.7.1-3
3.7.1-4
3.7.2-1
3.7.2-2
3.7.2-3
3.7.3-1
3.7.4-1
3.8.0-1
3.8.0-2
3.8.0-3
3.8.2-1
3.8.2-2
3.8.2-3
3.8.2-4
3.8.2-5
3.8.2-6
3.8.2-7
3.8.2-7+etch1
3.8.2-8
3.8.2-9
3.8.2-10
3.8.2-10+lenny1
3.8.2-11
3.8.2-12
3.8.2-13
3.9.0beta+deb1-1
3.9.0-1
3.9.0-2
3.9.1-1
3.9.2-1
3.9.2-2
3.9.2-3
3.9.4-1
3.9.4-2
3.9.4-3
3.9.4-4
3.9.4-5
3.9.4-6
3.9.4-7
3.9.4-8
3.9.4-9
3.9.5-1
3.9.5-2
4.0.0~beta3-1
4.0.0~beta3-2
4.0.0~beta4-1
4.0.0~beta5-1
4.0.0~beta5-2
4.0.0~beta6-1
4.0.0~beta6-2
4.0.0~beta6-3
4.0.0~beta7-1
4.0.0~beta7-2
4.0.0-1
4.0.0-2
4.0.1-1
4.0.1-2
4.0.1-3
4.0.1-4
4.0.1-5
4.0.1-6
4.0.1-7
4.0.1-8
4.0.2-1
4.0.2-2
4.0.2-3
4.0.2-4
4.0.2-5
4.0.2-6
4.0.2-6+deb7u1
4.0.2-6+deb7u2
4.0.2-6+deb7u3
4.0.2-6+deb7u4
4.0.2-6+deb7u5
Vulnerabilities (13)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU22615 - Integer overflow CVE-2019-17546 |
CWE-190 | High | 4.0.8-2+deb9u5, 4.1.0+git191117-2~deb10u1 | 10.11.2019 |
SB2019101413 SB2019101414 SB2020012302 and 18 more |
||
| #VU20390 - Integer overflow CVE-2019-14973 |
CWE-190 | Medium | 4.0.8-2+deb9u5, 4.1.0+git191117-2~deb10u1 | 26.08.2019 |
SB2019082710 SB2019110501 SB2020012302 and 15 more |
||
| #VU18498 - NULL Pointer Dereference CVE-2018-17000 |
CWE-476 | Low | 4.0.8-2+deb9u5 | 15.05.2019 |
SB2019040509 SB2020050402 |
||
| #VU17675 - NULL Pointer Dereference CVE-2019-7663 |
CWE-476 | Low | 4.0.8-2+deb9u5 | 14.02.2019 |
SB2019012914 SB2019040509 SB2019111328 and 3 more |
||
| #VU16444 - NULL Pointer Dereference CVE-2018-19210 |
CWE-476 | Low | 4.0.8-2+deb9u5 | 11.12.2018 |
SB2018120802 SB2018122307 SB2019040509 and 5 more |
||
| #VU16180 - Heap-based Buffer Overflow CVE-2018-12900 |
CWE-122 | Low | 4.0.8-2+deb9u5 | 30.11.2018 |
SB2018113002 SB2018113003 SB2019080629 and 6 more |
||
| #VU15682 - Reachable Assertion CVE-2017-13727 |
CWE-617 | Low | 4.0.8-2+deb9u2 | 01.11.2018 |
SB2018012706 |
||
| #VU15531 - Memory corruption CVE-2018-17100 |
CWE-119 | Low | 4.0.8-2+deb9u5 | 24.10.2018 |
SB2018090811 SB2018102427 SB2018102428 and 8 more |
||
| #VU13514 - Reachable Assertion CVE-2017-13726 |
CWE-617 | Low | 4.0.8-2+deb9u2 | 28.06.2018 |
SB2018062904 SB2018012706 SB2019101004 |
||
| #VU12657 - Out-of-bounds write CVE-2017-11335 |
CWE-787 | High | 4.0.8-2+deb9u2 | 15.05.2018 |
SB2017071711 SB2018012706 |
||
| #VU11499 - Memory corruption CVE-2017-9935 |
CWE-119 | High | 4.0.8-2+deb9u2 | 03.04.2018 |
SB2018011917 SB2018012706 SB2018112002 and 7 more |
||
| #VU11495 - Uncontrolled Memory Allocation CVE-2017-12944 |
CWE-789 | Low | 4.0.8-2+deb9u2 | 03.04.2018 |
SB2018011917 SB2018012706 SB2018120802 and 1 more |
||
| #VU9820 - NULL Pointer Dereference CVE-2017-18013 |
CWE-476 | Low | 4.0.8-2+deb9u2 | 01.01.2018 |
SB2018010201 SB2018011917 SB2018062904 and 7 more |