CVE-2006-3464

Publication date 3 August 2006

Last updated 24 July 2024


Ubuntu priority

TIFF library (libtiff) before 3.8.2 allows context-dependent attackers to pass numeric range checks and possibly execute code, and trigger assert errors, via large offset values in a TIFF directory that lead to an integer overflow and other unspecified vectors involving “unchecked arithmetic operations”.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tiff 7.04 feisty
Fixed 3.8.2-6
6.10 edgy
Fixed 3.8.2-6
6.06 LTS dapper
Fixed 3.7.4-1ubuntu3.2

References

Related Ubuntu Security Notices (USN)

    • USN-330-1
    • tiff vulnerabilities
    • 3 August 2006

Other references