← Back

CVE-2004-0886

nvd nist
Published: Jan 27, 2005Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls.

Affected (75)

Products: Libtiff: Libtiff · Pdflib: Pdf Library · Wxgtk2: Wxgtk2 · +6 more
Show all products
1 product
Libtiff
1 product
Pdf Library
1 product
Wxgtk2
2 products
Mac Os X
Mac Os X Server
1 product
Kde
1 product
Mandrake Linux
4 products
Enterprise Linux
Enterprise Linux Desktop
Fedora Core
Linux Advanced Workstation
1 product
Suse Linux
1 product
Secure Linux
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Libtiff
Version 3.4
Version 3.5.1
Version 3.5.2
Version 3.5.3
Version 3.5.4
Version 3.5.5
Version 3.5.7
Version 3.6.0
Version 3.6.1
Version 5.0.2
Wxgtk2
All versions
Version 2.5_.0
Configuration B
63 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 10.2.1
Version 10.2.2
Version 10.2.3
Version 10.2.4
Version 10.2.5
Version 10.2.6
Version 10.2.7
Version 10.2.8
Version 10.2
Version 10.3.1
Version 10.3.2
Version 10.3.3
Version 10.3.4
Version 10.3.5
Version 10.3.6
Version 10.3
Apple
Version 10.2.1
Version 10.2.2
Version 10.2.3
Version 10.2.4
Version 10.2.5
Version 10.2.6
Version 10.2.7
Version 10.2.8
Version 10.2
Version 10.3.1
Version 10.3.2
Version 10.3.3
Version 10.3.4
Version 10.3.5
Version 10.3.6
Version 10.3
Kde
Version 3.2.1
Version 3.2.2
Version 3.2.3
Version 3.2
Version 3.3.1
Version 3.3
Mandrakesoft
Version 10.0
Version 10.0
Redhat
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 2.1
Version 3.0
Version 3.0
Version 3.0
Version 3.0
Version core_2.0
Redhat
Version 2.1
Version 2.1
Suse
Version 1.0
Version 8.1
Version 8.2
Version 8
Version 9.0
Version 9.0
Version 9.1
Trustix
Version 1.5
Version 2.0
Version 2.1

References (42)

Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.