HIGH · 7.5

CVE-2004-1307

Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number ...

Vulnerability Description

Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
AvayaCall Management System Server8.0
AvayaCvlanAll versions
AvayaIntegrated ManagementAll versions
AvayaInteractive ResponseAll versions
AvayaIntuity Audix LxAll versions
F5Icontrol Service Manager1.3
LibtiffLibtiff3.4
SgiPropack3.0
ConectivaLinux9.0
AvayaMn100All versions
AppleMac Os X10.3
AppleMac Os X Server10.3
AvayaModular Messaging Message Storage Server1.1
GentooLinuxAll versions
MandrakesoftMandrake Linux10.0
MandrakesoftMandrake Linux Corporate Server3.0
ScoUnixware7.1.4
SunSolaris7.0
SunSunos5.7

References

FAQ

What is CVE-2004-1307?

CVE-2004-1307 is a vulnerability with a CVSS score of 7.5 (HIGH). Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number ...

How severe is CVE-2004-1307?

CVE-2004-1307 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-1307?

Check the references section above for vendor advisories and patch information. Affected products include: Avaya Call Management System Server, Avaya Cvlan, Avaya Integrated Management, Avaya Interactive Response, Avaya Intuity Audix Lx.