PublicDate: 2006-08-03 01:04:00 UTC Candidate: CVE-2006-3463 References: https://ubuntu.com/security/notices/USN-330-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3463 Description: The EstimateStripByteCounts function in TIFF library (libtiff) before 3.8.2 uses a 16-bit unsigned short when iterating over an unsigned 32-bit value, which allows context-dependent attackers to cause a denial of service via a large td_nstrips value, which triggers an infinite loop. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_tiff: released (3.7.4-1ubuntu3.2) edgy_tiff: released (3.8.2-6) feisty_tiff: released (3.8.2-6) devel_tiff: released (3.8.2-6) upstream_tiff: needs-triage