Vulnerability Description
A NULL Pointer Dereference occurs in the function TIFFPrintDirectory in tif_print.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4.0.8 and 4.0.9 when using the tiffinfo tool to print crafted TIFF information, a different vulnerability than CVE-2017-18013. (This affects an earlier part of the TIFFPrintDirectory function that was not addressed by the CVE-2017-18013 patch.)
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Libtiff | Libtiff | 4.0.9 |
| Debian | Debian Linux | 7.0 |
| Canonical | Ubuntu Linux | 14.04 |
Related Weaknesses (CWE)
References
- http://bugzilla.maptools.org/show_bug.cgi?id=2778ExploitIssue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2051
- https://access.redhat.com/errata/RHSA-2019:2053
- https://github.com/xiaoqx/pocs/tree/master/libtiffExploitThird Party Advisory
- https://gitlab.com/libtiff/libtiff/commit/be4c85b16e8801a16eec25e80eb9f3dd6a9673PatchThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/04/msg00010.htmlMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/04/msg00011.htmlMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/07/msg00002.htmlMailing ListThird Party Advisory
- https://usn.ubuntu.com/3864-1/Third Party Advisory
- https://www.debian.org/security/2018/dsa-4349Third Party Advisory
- http://bugzilla.maptools.org/show_bug.cgi?id=2778ExploitIssue TrackingThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:2051
- https://access.redhat.com/errata/RHSA-2019:2053
- https://github.com/xiaoqx/pocs/tree/master/libtiffExploitThird Party Advisory
- https://gitlab.com/libtiff/libtiff/commit/be4c85b16e8801a16eec25e80eb9f3dd6a9673PatchThird Party Advisory
FAQ
What is CVE-2018-7456?
CVE-2018-7456 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A NULL Pointer Dereference occurs in the function TIFFPrintDirectory in tif_print.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2...
How severe is CVE-2018-7456?
CVE-2018-7456 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-7456?
Check the references section above for vendor advisories and patch information. Affected products include: Libtiff Libtiff, Debian Debian Linux, Canonical Ubuntu Linux.