CVE-2006-2025
libtiff < 3.8.1 - Denial of Service and Possible Remote Code Execution via TIFFFetchData Integer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-2025. PoCs published by Tavis Ormandy.
AI-analyzed exploit summary The provided text describes an integer-overflow vulnerability in the LibTIFF library (CVE-2006-2025), which could lead to arbitrary code execution or denial-of-service conditions. The reference links to a binary exploit (TIFF file) hosted on GitLab.
Description
Integer overflow in the TIFFFetchData function in tif_dirread.c for libtiff before 3.8.1 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via a crafted TIFF image.
Exploits (1)
The provided text describes an integer-overflow vulnerability in the LibTIFF library (CVE-2006-2025), which could lead to arbitrary code execution or denial-of-service conditions. The reference links to a binary exploit (TIFF file) hosted on GitLab.