CVE-2006-3464

Publication date 3 August 2006

Last updated 24 July 2024


Ubuntu priority

TIFF library (libtiff) before 3.8.2 allows context-dependent attackers to pass numeric range checks and possibly execute code, and trigger assert errors, via large offset values in a TIFF directory that lead to an integer overflow and other unspecified vectors involving "unchecked arithmetic operations".

Status

Package Ubuntu Release Status
tiff 7.04 feisty
Fixed 3.8.2-6
6.10 edgy
Fixed 3.8.2-6
6.06 LTS dapper
Fixed 3.7.4-1ubuntu3.2

References

Related Ubuntu Security Notices (USN)

    • USN-330-1
    • tiff vulnerabilities
    • 3 August 2006

Other references