Sunday, October 3, 2010

libtiff: denial-of-service vulnerability

Users of libtiff please be advised of a denial-of-service vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
MDVSA-2010:190: [MDVSA-2010:190] libtiff denial-of-service
Problem Description:



A vulnerability has been found and corrected in libtiff:



libtiff allows remote attackers to cause a denial of service (memory

corruption) or possibly execute arbitrary code via a crafted TIFF image

(CVE-2010-3087).


Read more at www.criticalwatch.com
 

No comments:

Post a Comment