disintegration Imaging 1.6.2 allows attackers to cause a panic (because of an integer index out of range during a Grayscale call) via a crafted TIFF file to the scan function of scanner.go. NOTE: it is unclear whether there are common use cases in which this panic could have any security consequence
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-09-05T00:00:00

Updated: 2024-06-10T16:12:07.025385

Reserved: 2023-06-21T00:00:00


Link: CVE-2023-36308

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-09-05T04:15:08.703

Modified: 2024-06-10T17:16:12.520


Link: CVE-2023-36308

JSON object: View

cve-icon Redhat Information

No data.

CWE