CVE-2006-0405

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/01/2006
Last modified:
03/04/2025

Description

The TIFFFetchShortPair function in tif_dirread.c in libtiff 3.8.0 allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image that triggers a NULL pointer dereference, possibly due to changes in type declarations and/or the TIFFVSetField function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libtiff:libtiff:3.8.0:*:*:*:*:*:*:*