CVE-2012-3401

The t2p_read_tiff_init function in tiff2pdf (tools/tiff2pdf.c) in LibTIFF 4.0.2 and earlier does not properly initialize the T2P context struct pointer in certain error conditions, which allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image that triggers a heap-based buffer overflow.
References
Link Resource
http://libjpeg-turbo.svn.sourceforge.net/viewvc/libjpeg-turbo?view=revision&revision=830
http://lists.opensuse.org/opensuse-updates/2012-08/msg00011.html
http://osvdb.org/84090
http://rhn.redhat.com/errata/RHSA-2012-1590.html
http://secunia.com/advisories/49938 Vendor Advisory
http://secunia.com/advisories/50007 Vendor Advisory
http://secunia.com/advisories/50726
http://security.gentoo.org/glsa/glsa-201209-02.xml
http://www.debian.org/security/2012/dsa-2552
http://www.mandriva.com/security/advisories?name=MDVSA-2012:127
http://www.openwall.com/lists/oss-security/2012/07/19/1
http://www.openwall.com/lists/oss-security/2012/07/19/4
http://www.securityfocus.com/bid/54601
http://www.ubuntu.com/usn/USN-1511-1
http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf
https://bugzilla.redhat.com/attachment.cgi?id=596457
https://bugzilla.redhat.com/show_bug.cgi?id=837577
https://exchange.xforce.ibmcloud.com/vulnerabilities/77088
http://libjpeg-turbo.svn.sourceforge.net/viewvc/libjpeg-turbo?view=revision&revision=830
http://lists.opensuse.org/opensuse-updates/2012-08/msg00011.html
http://osvdb.org/84090
http://rhn.redhat.com/errata/RHSA-2012-1590.html
http://secunia.com/advisories/49938 Vendor Advisory
http://secunia.com/advisories/50007 Vendor Advisory
http://secunia.com/advisories/50726
http://security.gentoo.org/glsa/glsa-201209-02.xml
http://www.debian.org/security/2012/dsa-2552
http://www.mandriva.com/security/advisories?name=MDVSA-2012:127
http://www.openwall.com/lists/oss-security/2012/07/19/1
http://www.openwall.com/lists/oss-security/2012/07/19/4
http://www.securityfocus.com/bid/54601
http://www.ubuntu.com/usn/USN-1511-1
http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf
https://bugzilla.redhat.com/attachment.cgi?id=596457
https://bugzilla.redhat.com/show_bug.cgi?id=837577
https://exchange.xforce.ibmcloud.com/vulnerabilities/77088
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:libtiff:libtiff:*:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta18:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta24:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta28:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta29:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta31:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta32:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta34:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta35:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta36:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.4:beta37:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.2:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.3:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.4:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.5:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.6:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.6:beta:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:alpha:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:alpha2:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:alpha3:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:alpha4:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.5.7:beta:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.6.0:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.6.0:beta:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.6.0:beta2:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.6.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.0:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.0:alpha:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.0:beta:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.0:beta2:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.2:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.3:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.7.4:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.8.0:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.8.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.8.2:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.0:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.0:beta:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.2:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.2-5.2.1:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.3:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:3.9.4:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:*:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:alpha:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta1:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta2:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta3:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta4:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta5:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0:beta6:*:*:*:*:*:*
cpe:2.3:a:libtiff:libtiff:4.0.1:*:*:*:*:*:*:*

History

21 Nov 2024, 01:40

Type Values Removed Values Added
References () http://libjpeg-turbo.svn.sourceforge.net/viewvc/libjpeg-turbo?view=revision&revision=830 - () http://libjpeg-turbo.svn.sourceforge.net/viewvc/libjpeg-turbo?view=revision&revision=830 -
References () http://lists.opensuse.org/opensuse-updates/2012-08/msg00011.html - () http://lists.opensuse.org/opensuse-updates/2012-08/msg00011.html -
References () http://osvdb.org/84090 - () http://osvdb.org/84090 -
References () http://rhn.redhat.com/errata/RHSA-2012-1590.html - () http://rhn.redhat.com/errata/RHSA-2012-1590.html -
References () http://secunia.com/advisories/49938 - Vendor Advisory () http://secunia.com/advisories/49938 - Vendor Advisory
References () http://secunia.com/advisories/50007 - Vendor Advisory () http://secunia.com/advisories/50007 - Vendor Advisory
References () http://secunia.com/advisories/50726 - () http://secunia.com/advisories/50726 -
References () http://security.gentoo.org/glsa/glsa-201209-02.xml - () http://security.gentoo.org/glsa/glsa-201209-02.xml -
References () http://www.debian.org/security/2012/dsa-2552 - () http://www.debian.org/security/2012/dsa-2552 -
References () http://www.mandriva.com/security/advisories?name=MDVSA-2012:127 - () http://www.mandriva.com/security/advisories?name=MDVSA-2012:127 -
References () http://www.openwall.com/lists/oss-security/2012/07/19/1 - () http://www.openwall.com/lists/oss-security/2012/07/19/1 -
References () http://www.openwall.com/lists/oss-security/2012/07/19/4 - () http://www.openwall.com/lists/oss-security/2012/07/19/4 -
References () http://www.securityfocus.com/bid/54601 - () http://www.securityfocus.com/bid/54601 -
References () http://www.ubuntu.com/usn/USN-1511-1 - () http://www.ubuntu.com/usn/USN-1511-1 -
References () http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf - () http://www.xerox.com/download/security/security-bulletin/16287-4d6b7b0c81f7b/cert_XRX13-003_v1.0.pdf -
References () https://bugzilla.redhat.com/attachment.cgi?id=596457 - () https://bugzilla.redhat.com/attachment.cgi?id=596457 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=837577 - () https://bugzilla.redhat.com/show_bug.cgi?id=837577 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/77088 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/77088 -

Information

Published : 2012-08-13 20:55

Updated : 2024-11-21 01:40


NVD link : CVE-2012-3401

Mitre link : CVE-2012-3401

CVE.ORG link : CVE-2012-3401


JSON object : View

Products Affected

libtiff

  • libtiff
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer