CVE-2006-2025

Publication date 25 April 2006

Last updated 24 July 2024


Ubuntu priority

Integer overflow in the TIFFFetchData function in tif_dirread.c for libtiff before 3.8.1 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a crafted TIFF image.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tiff 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Fixed 3.7.4-1ubuntu3.2

References

Related Ubuntu Security Notices (USN)

    • USN-277-1
    • TIFF library vulnerabilities
    • 4 May 2006

Other references