#VU13514 Assertion failure in LibTIFF - CVE-2017-13726
Published: June 28, 2018 / Updated: June 29, 2018
LibTIFF
LibTIFF
Description
The vulnerability allows a remote attacker to cause DoS condition.
The vulnerability exists due to a reachable assertion abort in the function TIFFWriteDirectorySec(), related to tif_dirwrite.c and a SubIFD tag when processing malicious input. A remote attacker can send specially crafted input, trigger assertion failure and cause the service to crash.