LibTIFF 3.9.4 - Unknown Tag Second Pass Processing Remote Denial of Service
Author: Tom Lane
type: dos
platform: linux
port:
date_added: 2010-06-14
date_updated: 2014-08-10
verified: 1
codes: CVE-2010-2631;OSVDB-66090
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/41477/info
LibTIFF is prone to a denial-of-service vulnerability because it fails to properly validate user-supplied input.
An attacker can exploit this issue to crash an application that uses the vulnerable library, denying service to legitimate users.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/34279.tif