CVE-2005-2452

Publication date 3 August 2005

Last updated 24 July 2024


Ubuntu priority

libtiff up to 3.7.0 allows remote attackers to cause a denial of service (application crash) via a TIFF image header with a zero “YCbCr subsampling” value, which causes a divide-by-zero error in (1) tif_strip.c and (2) tif_tile.c, a different vulnerability than CVE-2004-0804.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tiff 7.04 feisty
Fixed 3.8.2-6
6.10 edgy
Fixed 3.8.2-6
6.06 LTS dapper
Fixed 3.7.4-1ubuntu3.2