CVE-2017-9147
MEDIUMLibTIFF 4.0.7 - Out-of-bounds Read in _TIFFVGetField
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-9147. PoCs published by zhangtan.
AI-analyzed exploit summary This is a writeup detailing an out-of-bounds read vulnerability in LibTIFF's tiffsplit utility, specifically in the _TIFFVGetField function. The vulnerability leads to a segmentation fault due to an invalid memory read when processing a malformed TIFF file.
Description
LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file.
Exploits (1)
This is a writeup detailing an out-of-bounds read vulnerability in LibTIFF's tiffsplit utility, specifically in the _TIFFVGetField function. The vulnerability leads to a segmentation fault due to an invalid memory read when processing a malformed TIFF file.
References (5)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H