← Back

CVE-2004-0803

nvd nist
Published: Dec 23, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer overflows, allow remote attackers to execute arbitrary code via TIFF files.

Affected (74)

Products: Libtiff: Libtiff · Pdflib: Pdf Library · Wxgtk2: Wxgtk2 · +6 more
Show all products
1 product
Libtiff
1 product
Pdf Library
1 product
Wxgtk2
2 products
Mac Os X
Mac Os X Server
1 product
Kde
1 product
Mandrake Linux
4 products
Enterprise Linux
Enterprise Linux Desktop
Fedora Core
Linux Advanced Workstation
1 product
Suse Linux
1 product
Secure Linux
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Libtiff
Version 3.4
Version 3.5.1
Version 3.5.2
Version 3.5.3
Version 3.5.4
Version 3.5.5
Version 3.5.7
Version 3.6.0
Version 3.6.1
Version 5.0.2
Version 2.5_.0
Configuration B
63 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 10.2.1
Version 10.2.2
Version 10.2.3
Version 10.2.4
Version 10.2.5
Version 10.2.6
Version 10.2.7
Version 10.2.8
Version 10.2
Version 10.3.1
Version 10.3.2
Version 10.3.3
Version 10.3.4
Version 10.3.5
Version 10.3.6
Version 10.3
Apple
Version 10.2.1
Version 10.2.2
Version 10.2.3
Version 10.2.4
Version 10.2.5
Version 10.2.6
Version 10.2.7
Version 10.2.8
Version 10.2
Version 10.3.1
Version 10.3.2
Version 10.3.3
Version 10.3.4
Version 10.3.5
Version 10.3.6
Version 10.3
Kde
Version 3.2.1
Version 3.2.2
Version 3.2.3
Version 3.2
Version 3.3.1
Version 3.3
Mandrakesoft
Version 10.0
Version 10.0
Redhat
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 3.0
Version 3.0
Version 3.0
Version 3.0
Version core_2.0
Redhat
Version 2.1
Version 2.1
Suse
Version 1.0
Version 8.1
Version 8.2
Version 8
Version 9.0
Version 9.0
Version 9.1
Trustix
Version 1.5
Version 2.0
Version 2.1

References (40)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.