#VU15148 Heap-based buffer overflow in LibTIFF - CVE-2018-17795
Published: October 2, 2018 / Updated: May 21, 2022
LibTIFF
LibTIFF
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the t2p_write_pdf() function in tiff2pdf.c file. A remote attacker can use a specially crafted TIFF file to trigger heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.