Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2018.0426
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2018-0426)
Zusammenfassung:The remote host is missing an update for the 'libtiff' package(s) announced via the MGASA-2018-0426 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'libtiff' package(s) announced via the MGASA-2018-0426 advisory.

Vulnerability Insight:
The updated packages fix security vulnerabilities:

An issue was discovered in LibTIFF 4.0.9. There is a int32 overflow in
multiply_ms in tools/ppm2tiff.c, which can cause a denial of service
(crash) or possibly have unspecified other impact via a crafted image
file (CVE-2018-17100).

An issue was discovered in LibTIFF 4.0.9. There are two out-of-bounds
writes in cpTags in tools/tiff2bw.c and tools/pal2rgb.c, which can cause
a denial of service (application crash) or possibly have unspecified other
impact via a crafted image file (CVE-2018-17101).

Affected Software/OS:
'libtiff' package(s) on Mageia 6.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-17100
Debian Security Information: DSA-4670 (Google Search)
https://www.debian.org/security/2020/dsa-4670
http://bugzilla.maptools.org/show_bug.cgi?id=2810
https://gitlab.com/libtiff/libtiff/merge_requests/33/diffs?commit_id=6da1fb3f64d43be37e640efbec60400d1f1ac39e
https://lists.debian.org/debian-lts-announce/2018/10/msg00019.html
RedHat Security Advisories: RHSA-2019:2053
https://access.redhat.com/errata/RHSA-2019:2053
https://usn.ubuntu.com/3864-1/
https://usn.ubuntu.com/3906-2/
Common Vulnerability Exposure (CVE) ID: CVE-2018-17101
BugTraq ID: 105370
http://www.securityfocus.com/bid/105370
Debian Security Information: DSA-4349 (Google Search)
https://www.debian.org/security/2018/dsa-4349
http://bugzilla.maptools.org/show_bug.cgi?id=2807
https://gitlab.com/libtiff/libtiff/merge_requests/33/diffs?commit_id=f1b94e8a3ba49febdd3361c0214a1d1149251577
CopyrightCopyright (C) 2022 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.