#VU40087 Out-of-bounds read in LibTIFF - CVE-2016-3619
Published: October 3, 2016 / Updated: May 21, 2022
LibTIFF
LibTIFF
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error in The DumpModeEncode function in tif_dumpmode.c in the bmp2tiff tool in LibTIFF 4.0.6 and earlier, when the "-c none" option is used,. A remote attacker can perform a denial of service (buffer over-read) via a crafted BMP image.