In LibTIFF 4.0.9, there is an uncontrolled resource consumption in the TIFFSetDirectory function of tif_dir.c. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted tif file. This occurs because the declared number of directory entries is not validated against the actual number of directory entries.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-01-19T08:00:00

Updated: 2019-04-19T17:36:15

Reserved: 2018-01-19T00:00:00


Link: CVE-2018-5784

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-01-19T08:29:00.320

Modified: 2019-04-22T16:19:20.710


Link: CVE-2018-5784

JSON object: View

cve-icon Redhat Information

No data.

CWE