what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

Libtiff 4.0.3 Integer Overflow

Libtiff 4.0.3 Integer Overflow
Posted Dec 22, 2014
Authored by Project Zero Labs, Paris Zoumpouloglou

Libtiff version 4.0.3 suffers from an integer overflow vulnerability that results in an out-of-bounds memory read.

tags | advisory, overflow
SHA-256 | 9fe0f92666d1dda0f8fc69edc3f1572b6a7eddcaf75f93240712c87c6704def8

Libtiff 4.0.3 Integer Overflow

Change Mirror Download
----------
Background
----------

Libtiff provides support for the Tag Image File Format (TIFF), a widely
used format for storing image data.

----------------
Software Version
----------------

All tests were performed using libtiff 4.0.3

-----------
Description
-----------

Fuzzing bmp2tiff, using the afl-fuzzer, revealed an integer overflow
issue related to the dimensions of the input BMP image. The issue
resulted in an out-of-bounds memory read which causes the application to
crash. Details can be found at
http://bugzilla.maptools.org/show_bug.cgi?id=2494.

--------
Timeline
--------

2014-12-09 Discovery reported to libtiff bug tracker
2014-12-21 Issue was fixed
2014-12-22 Public Disclosure

-------
Credits
-------

Reported by Paris Zoumpouloglou of Project Zero labs

--
Project Zero Labs

@projectzerolabs
https://www.projectzero.gr


Login or Register to add favorites

File Archive:

October 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Oct 1st
    0 Files
  • 2
    Oct 2nd
    22 Files
  • 3
    Oct 3rd
    19 Files
  • 4
    Oct 4th
    0 Files
  • 5
    Oct 5th
    0 Files
  • 6
    Oct 6th
    0 Files
  • 7
    Oct 7th
    0 Files
  • 8
    Oct 8th
    0 Files
  • 9
    Oct 9th
    0 Files
  • 10
    Oct 10th
    0 Files
  • 11
    Oct 11th
    0 Files
  • 12
    Oct 12th
    0 Files
  • 13
    Oct 13th
    0 Files
  • 14
    Oct 14th
    0 Files
  • 15
    Oct 15th
    0 Files
  • 16
    Oct 16th
    0 Files
  • 17
    Oct 17th
    0 Files
  • 18
    Oct 18th
    0 Files
  • 19
    Oct 19th
    0 Files
  • 20
    Oct 20th
    0 Files
  • 21
    Oct 21st
    0 Files
  • 22
    Oct 22nd
    0 Files
  • 23
    Oct 23rd
    0 Files
  • 24
    Oct 24th
    0 Files
  • 25
    Oct 25th
    0 Files
  • 26
    Oct 26th
    0 Files
  • 27
    Oct 27th
    0 Files
  • 28
    Oct 28th
    0 Files
  • 29
    Oct 29th
    0 Files
  • 30
    Oct 30th
    0 Files
  • 31
    Oct 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close