CVE-2020-35521
Published: 9 March 2021
A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service.
Priority
CVSS 3 base score: 5.5
Status
Package | Release | Status |
---|---|---|
tiff Launchpad, Ubuntu, Debian |
bionic |
Needs triage
|
focal |
Needs triage
|
|
groovy |
Ignored
(reached end-of-life)
|
|
hirsute |
Not vulnerable
(4.1.0+git201212-1ubuntu1)
|
|
impish |
Not vulnerable
(4.1.0+git201212-1ubuntu1)
|
|
jammy |
Not vulnerable
(4.1.0+git201212-1ubuntu1)
|
|
precise |
Ignored
(end of ESM support, was needs-triage)
|
|
trusty |
Needs triage
|
|
upstream |
Released
(4.1.0+git201212-1)
|
|
xenial |
Needs triage
|
|
Patches: upstream: https://gitlab.com/libtiff/libtiff/-/commit/b5a935d96b21cda0f434230cdf8ca958cd8b4eef upstream: https://gitlab.com/libtiff/libtiff/-/merge_requests/165 |